CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Lenovo 4Thinkserver Rd340 Firmware Thinkserver Rd440 FirmwareThinkserver Rd640 Firmware+1 moreNov 21, 2024 Nov 16, 2018 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 In some Lenovo ThinkServer-branded servers, a command injection vulnerability exists in the BMC firmware download command. This allows a privileged user to download and execute arbitrary code inside the BMC. This can onl...Show more |
5Canonical DebianLenovo+2 more38Bm Nextscale Fan Power Controller CmmDebian Linux+35 moreNov 21, 2024 Apr 23, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-service or a remote code-execution vulnerability. |
1Lenovo 11163 Firmware H50 30g FirmwareIdeacentre 300 20ish Firmware+108 moreMay 13, 2026 Aug 10, 2017 N/A· v4 6.8 MEDIUM· v3 7.2 HIGH· v2 A vulnerability has been identified in some Lenovo products that use UEFI (BIOS) code developed by American Megatrends, Inc. (AMI). With this vulnerability, conditions exist where an attacker with administrative privileg...Show more |