7.5
CVSSv3

CVE-2023-2992

Published: 26/06/2023 Updated: 05/07/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An unauthenticated  denial of service vulnerability exists in the SMM v1, SMM v2, and FPC management web server which can be triggered under crafted conditions. Rebooting SMM or FPC will restore access to the management web server.

Vulnerable Product Search on Vulmon Subscribe to Product

lenovo nextscale_n1200_enclosure_firmware

lenovo thinkagile_cp-cb-10_firmware

lenovo thinkagile_cp-cb-10e_firmware

lenovo thinkagile_hx_enclosure_certified_node_firmware

lenovo thinkagile_vx_enclosure_firmware

lenovo thinksystem_d2_enclosure_firmware

lenovo thinksystem_da240_enclosure_firmware

lenovo thinksystem_dw612_enclosure_firmware