CVE-2014-2955 Information

Description

Raritan PX before 1.5.11 on DPXR20A-16 devices allows remote attackers to bypass authentication and execute arbitrary IPMI commands by using cipher suite 0 (aka cipher zero) and an arbitrary password.

Reference

http://seclists.org/fulldisclosure/2014/Jul/14 http://www.kb.cert.org/vuls/id/712660

Share on: