CVE-2015-3323
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
16/04/2015
Last modified:
12/04/2025
Description
The ThinkServer System Manager (TSM) Baseboard Management Controller before firmware 1.27.73476 for ThinkServer RD350, RD450, RD550, RD650, and TD350 allows remote attackers to cause a denial of service (web interface crash) via a malformed HTTP request during authentication.
Impact
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:lenovo:thinkserver_system_manager_baseboard_management_controller_firmware:*:*:*:*:*:*:*:* | 118.71532. (including) | |
| cpe:2.3:h:lenovo:thinkserver_rd350:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkserver_rd450:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkserver_rd550:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkserver_rd650:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:lenovo:thinkserver_td350:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



