CVE-2015-3323

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
16/04/2015
Last modified:
12/04/2025

Description

The ThinkServer System Manager (TSM) Baseboard Management Controller before firmware 1.27.73476 for ThinkServer RD350, RD450, RD550, RD650, and TD350 allows remote attackers to cause a denial of service (web interface crash) via a malformed HTTP request during authentication.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:lenovo:thinkserver_system_manager_baseboard_management_controller_firmware:*:*:*:*:*:*:*:* 118.71532. (including)
cpe:2.3:h:lenovo:thinkserver_rd350:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkserver_rd450:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkserver_rd550:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkserver_rd650:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkserver_td350:-:*:*:*:*:*:*:*