{ "id": "CVE-2023-2992", "sourceIdentifier": "psirt@lenovo.com", "published": "2023-06-26T20:15:09.933", "lastModified": "2024-11-21T07:59:42.850", "vulnStatus": "Modified", "cveTags": [], "descriptions": [ { "lang": "en", "value": "An unauthenticated \u00a0denial of service vulnerability exists in the SMM v1, SMM v2, and FPC management web server which can be triggered under crafted conditions. Rebooting SMM or FPC will restore access to the management web server." } ], "metrics": { "cvssMetricV31": [ { "source": "psirt@lenovo.com", "type": "Secondary", "cvssData": { "version": "3.1", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "baseScore": 7.5, "baseSeverity": "HIGH", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "NONE", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "availabilityImpact": "HIGH" }, "exploitabilityScore": 3.9, "impactScore": 3.6 }, { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "3.1", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "baseScore": 7.5, "baseSeverity": "HIGH", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "NONE", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "availabilityImpact": "HIGH" }, "exploitabilityScore": 3.9, "impactScore": 3.6 } ] }, "weaknesses": [ { "source": "psirt@lenovo.com", "type": "Secondary", "description": [ { "lang": "en", "value": "CWE-405" } ] }, { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "NVD-CWE-noinfo" } ] } ], "configurations": [ { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lenovo:nextscale_n1200_enclosure_firmware:*:*:*:*:*:*:*:*", "versionEndExcluding": "fhet60b-3.40", "matchCriteriaId": "E20036ED-CC11-4093-847B-E324D5D18B04" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lenovo:nextscale_n1200_enclosure:-:*:*:*:*:*:*:*", "matchCriteriaId": "21BACC24-DDE4-4016-97DE-60C51E5F1AC6" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lenovo:thinkagile_cp-cb-10_firmware:*:*:*:*:*:*:*:*", "versionEndExcluding": "tesm38c-1.26", "matchCriteriaId": "7813CA0F-7081-4B35-A502-D7E960121989" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lenovo:thinkagile_cp-cb-10:-:*:*:*:*:*:*:*", "matchCriteriaId": "2CE24C16-2F33-4BD1-8E0F-8AB009842AB6" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lenovo:thinkagile_cp-cb-10e_firmware:*:*:*:*:*:*:*:*", "versionEndExcluding": "tesm38c-1.26", "matchCriteriaId": "C29AD224-2715-4B91-8F17-244C396833AA" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lenovo:thinkagile_cp-cb-10e:-:*:*:*:*:*:*:*", "matchCriteriaId": "1BEF2683-FE65-4600-818F-25867008381E" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lenovo:thinkagile_hx_enclosure_certified_node_firmware:*:*:*:*:*:*:*:*", "versionEndExcluding": "tesm38c-1.26", "matchCriteriaId": "4A26434A-500B-4B9C-8880-E975167448EC" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lenovo:thinkagile_hx_enclosure_certified_node:-:*:*:*:*:*:*:*", "matchCriteriaId": "41B43352-1245-46E2-A167-47B2E629BFA7" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lenovo:thinkagile_vx_enclosure_firmware:*:*:*:*:*:*:*:*", "versionEndExcluding": "tesm38c-1.26", "matchCriteriaId": "BECD4703-45C9-4A7A-9F39-E1BE738A6E21" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lenovo:thinkagile_vx_enclosure:-:*:*:*:*:*:*:*", "matchCriteriaId": "C425D71A-19B5-4983-B95C-B5CB6EB7C065" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lenovo:thinksystem_d2_enclosure_firmware:*:*:*:*:*:*:*:*", "versionEndExcluding": "tesm38c-1.26", "matchCriteriaId": "F17F2C1C-0F16-49A0-B84E-DDE31CD33D38" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lenovo:thinksystem_d2_enclosure:-:*:*:*:*:*:*:*", "matchCriteriaId": "8A78D856-B4DF-4B79-9901-434AE6FCE240" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lenovo:thinksystem_da240_enclosure_firmware:*:*:*:*:*:*:*:*", "versionEndExcluding": "umsm10s-1.07", "matchCriteriaId": "1D8F59EB-B8B7-4472-848E-4236C308244C" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lenovo:thinksystem_da240_enclosure:-:*:*:*:*:*:*:*", "matchCriteriaId": "B1A2C8EE-897D-4A4A-A9EB-AEEDA427D0C8" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lenovo:thinksystem_dw612_enclosure_firmware:*:*:*:*:*:*:*:*", "versionEndExcluding": "umsm10s-1.07", "matchCriteriaId": "F7A82172-9767-4BB1-A399-082572B03002" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lenovo:thinksystem_dw612_enclosure:-:*:*:*:*:*:*:*", "matchCriteriaId": "0EC0CC24-36CA-4C52-B149-F5FD48D8BB8A" } ] } ] } ], "references": [ { "url": "https://support.lenovo.com/us/en/product_security/LEN-127357", "source": "psirt@lenovo.com", "tags": [ "Vendor Advisory" ] }, { "url": "https://support.lenovo.com/us/en/product_security/LEN-127357", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Vendor Advisory" ] } ] }