Raritan PX prior to 1.5.11 on DPXR20A-16 devices allows remote malicious users to bypass authentication and execute arbitrary IPMI commands by using cipher suite 0 (aka cipher zero) and an arbitrary password.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
raritan px |
||
raritan px 1.5.7 |
||
raritan px 1.5.4 |
||
raritan px 1.3 |
||
raritan px 1.2.7 |
||
raritan px 1.2.5 |
||
raritan px 1.2 |
||
raritan px 1.4.1 |
||
raritan px 1.3.1 |
||
raritan px 1.1.6 |
||
raritan px 1.0.4 |
||
raritan px 1.5 |
||
raritan px 1.3.5 |
||
raritan px 1.1 |
||
raritan px 1.0 |
||
raritan dpxr20a-16 - |