PT-2013-4806 · Intel+1 · Intelligent Platform Management Interface+1

Published

2013-08-09

·

Updated

2017-08-29

·

CVE-2013-4037

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Integrated Management Module (IMM) and Integrated Management Module II (IMM2) (affected versions not specified)
Description The issue concerns the RAKP protocol support in the Intelligent Platform Management Interface (IPMI) implementation, which sends a password hash to the client. This makes it easier for remote attackers to obtain access via a brute-force attack.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2013-4037

Affected Products

Integrated Management Module Ii
Intelligent Platform Management Interface