VendorsLenovothinkserver_rd440_firmwareall versions
Vulnerabilities

Lenovo ThinkServer

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2017-17833
OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-service or a remote code-execution vulnerability.
Published 2018-04-23 · Modified
9.8EPSS 0.038
CVE-2018-9086
Legacy Server BMC Remote Command Injection
Published 2018-11-16 · Modified
7.2EPSS 0.024
CVE-2017-3753
A vulnerability has been identified in some Lenovo products that use UEFI (BIOS) code developed by American Megatrends, Inc. (AMI). With this vulnerability, conditions exist where an attacker with administrative privileges or physical access to a system may be able to run specially crafted code that can allow them to bypass system protections such as Device Guard and Hyper-V.
Published 2017-08-10 · Modified
7.2EPSS 0.005