Lenovo ThinkServer RD350, RD450, RD550, RD650, and TD350 servers before 1.26.0 use weak encryption to store (1) user and (2) administrator BIOS passwords, which allows attackers to decrypt the passwords via unspecified vectors.
Subscriptions
| Vendors | Products |
|---|---|
|
Lenovo
Subscribe
|
Thinkserver Rd350
Subscribe
Thinkserver Rd350 Firmware
Subscribe
Thinkserver Rd450
Subscribe
Thinkserver Rd450 Firmware
Subscribe
Thinkserver Rd550
Subscribe
Thinkserver Rd550 Firmware
Subscribe
Thinkserver Rd650
Subscribe
Thinkserver Rd650 Firmware
Subscribe
Thinkserver Td350
Subscribe
Thinkserver Td350 Firmware
Subscribe
|
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2015-3368 | Lenovo ThinkServer RD350, RD450, RD550, RD650, and TD350 servers before 1.26.0 use weak encryption to store (1) user and (2) administrator BIOS passwords, which allows attackers to decrypt the passwords via unspecified vectors. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T05:47:56.259Z
Reserved: 2015-04-16T00:00:00.000Z
Link: CVE-2015-3322
No data.
Status : Deferred
Published: 2015-04-16T23:59:03.557
Modified: 2025-04-12T10:46:40.837
Link: CVE-2015-3322
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD