PT-2015-6151 · Lenovo · Thinkserver System Manager (Tsm) Baseboard Management Controller

Publicado

2015-04-16

·

Atualizado

2016-12-06

·

CVE-2015-3324

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions ThinkServer System Manager (TSM) Baseboard Management Controller versions prior to 1.27.73476
Description The issue concerns the lack of server certificate validation during an encrypted remote KVM session, allowing man-in-the-middle attackers to spoof servers.
Recommendations For versions prior to 1.27.73476, update the firmware to version 1.27.73476 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2015-3324

Produtos afetados

Thinkserver System Manager (Tsm) Baseboard Management Controller