Lenovo ThinkServer RD350, RD450, RD550, RD650, and TD350 servers before 1.26.0 use weak encryption to store (1) user and (2) administrator BIOS passwords, which allows attackers to decrypt the passwords via unspecified vectors.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Lenovo
Subscribe
|
Thinkserver Rd350
Subscribe
Thinkserver Rd350 Firmware
Subscribe
Thinkserver Rd450
Subscribe
Thinkserver Rd450 Firmware
Subscribe
Thinkserver Rd550
Subscribe
Thinkserver Rd550 Firmware
Subscribe
Thinkserver Rd650
Subscribe
Thinkserver Rd650 Firmware
Subscribe
Thinkserver Td350
Subscribe
Thinkserver Td350 Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2015-3368 | Lenovo ThinkServer RD350, RD450, RD550, RD650, and TD350 servers before 1.26.0 use weak encryption to store (1) user and (2) administrator BIOS passwords, which allows attackers to decrypt the passwords via unspecified vectors. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T05:47:56.259Z
Reserved: 2015-04-16T00:00:00
Link: CVE-2015-3322
No data.
Status : Deferred
Published: 2015-04-16T23:59:03.557
Modified: 2025-04-12T10:46:40.837
Link: CVE-2015-3322
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD