ZeroHour

CVE-2023-2992

CVSS 3.1
7.5 high
EPSS
<1%p47
Published
()
Modified
Description

An unauthenticated denial of service vulnerability exists in the SMM v1, SMM v2, and FPC management web server which can be triggered under crafted conditions. Rebooting SMM or FPC will restore access to the management web server.

Vendors
lenovo
Products
nextscale n1200 enclosure firmware, thinkagile cp-cb-10 firmware, thinkagile cp-cb-10e firmware, thinkagile hx enclosure certified node firmware, thinkagile vx enclosure firmware, thinksystem d2 enclosure firmware, thinksystem da240 enclosure firmware, thinksystem dw612 enclosure firmware
Weakness
CWE-405
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.