CVE-2015-3323: Input Validation
The ThinkServer System Manager (TSM) Baseboard Management Controller before firmware 1.27.73476 for ThinkServer RD350, RD450, RD550, RD650, and TD350 allows remote attackers to cause a denial of service (web interface crash) via a malformed HTTP request during authentication.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-3323?
CVE-2015-3323 is categorized as a denial of service vulnerability impacting the web interface of the ThinkServer System Manager.
How do I fix CVE-2015-3323?
To remediate CVE-2015-3323, update the ThinkServer System Manager Baseboard Management Controller firmware to version 1.27.73476 or later.
What devices are affected by CVE-2015-3323?
CVE-2015-3323 affects the ThinkServer RD350, RD450, RD550, RD650, and TD350 models running the vulnerable firmware versions.
Can CVE-2015-3323 be exploited remotely?
Yes, CVE-2015-3323 can be exploited remotely through a malformed HTTP request during the authentication process.
What could happen if CVE-2015-3323 is exploited?
Exploitation of CVE-2015-3323 could lead to a denial of service, causing the web interface of the affected device to crash.