← Back

CVE-2014-2955

nvd nist
Published: Jul 14, 2014Modified: May 6, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

Raritan PX before 1.5.11 on DPXR20A-16 devices allows remote attackers to bypass authentication and execute arbitrary IPMI commands by using cipher suite 0 (aka cipher zero) and an arbitrary password.

Affected (16)

Products: Raritan: Px, Dpxr20a 16
2 products
Px
Dpxr20a 16
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Raritan
Up to 1.5.8
Version 1.0.4
Version 1.0
Version 1.1.6
Version 1.1
Version 1.2.5
Version 1.2.7
Version 1.2
Version 1.3.1
Version 1.3.5
Version 1.3
Version 1.4.1
Version 1.5.4
Version 1.5.7
Version 1.5
All versions

References (4)

Source: cret@cert.org
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource

Timeline

No history available yet.