Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r96w-3qpm-jj6g

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The ThinkServer System Manager (TSM) Baseboard Management Controller before firmware 1.27.73476 for ThinkServer RD350, RD450, RD550, RD650, and TD350 does not validate server certificates during an "encrypted remote KVM session," which allows man-in-the-middle attackers to spoof servers.

The ThinkServer System Manager (TSM) Baseboard Management Controller before firmware 1.27.73476 for ThinkServer RD350, RD450, RD550, RD650, and TD350 does not validate server certificates during an "encrypted remote KVM session," which allows man-in-the-middle attackers to spoof servers.

EPSS

Процентиль: 34%
0.00137
Низкий

Связанные уязвимости

nvd
почти 11 лет назад

The ThinkServer System Manager (TSM) Baseboard Management Controller before firmware 1.27.73476 for ThinkServer RD350, RD450, RD550, RD650, and TD350 does not validate server certificates during an "encrypted remote KVM session," which allows man-in-the-middle attackers to spoof servers.

EPSS

Процентиль: 34%
0.00137
Низкий