CVE-2014-2955

Raritan PX before 1.5.11 on DPXR20A-16 devices allows remote attackers to bypass authentication and execute arbitrary IPMI commands by using cipher suite 0 (aka cipher zero) and an arbitrary password.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
certccCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 78%
VendorProductVersion
raritanpx
𝑥
≤ 1.5.8
raritanpx
1.0
raritanpx
1.0.4
raritanpx
1.1
raritanpx
1.1.6
raritanpx
1.2
raritanpx
1.2.5
raritanpx
1.2.7
raritanpx
1.3
raritanpx
1.3.1
raritanpx
1.3.5
raritanpx
1.4.1
raritanpx
1.5
raritanpx
1.5.4
raritanpx
1.5.7
raritandpxr20a-16
-
𝑥
= Vulnerable software versions