Security Advisory

CVE-2017-3774

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-04-19 14:00:00
Last updated 2024-09-16 16:48:19
Assigner lenovo
CVSS score not scored
State PUBLISHED

Description

A stack overflow vulnerability was discovered within the web administration service in Integrated Management Module 2 (IMM2) earlier than version 4.70 used in some Lenovo servers and earlier than version 6.60 used in some IBM servers. An attacker providing a crafted user ID and password combination can cause a portion of the authentication routine to overflow its stack, resulting in stack corruption.