PT-2013-4806 · Intel+1 · Intelligent Platform Management Interface+1
Published
2013-08-09
·
Updated
2017-08-29
·
CVE-2013-4037
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Integrated Management Module (IMM) and Integrated Management Module II (IMM2) (affected versions not specified)
Description
The issue concerns the RAKP protocol support in the Intelligent Platform Management Interface (IPMI) implementation, which sends a password hash to the client. This makes it easier for remote attackers to obtain access via a brute-force attack.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Integrated Management Module Ii
Intelligent Platform Management Interface