Description
The RAKP protocol support in the Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) and Integrated Management Module II (IMM2) on IBM BladeCenter, Flex System, System x iDataPlex, and System x3### servers sends a password hash to the client, which makes it easier for remote attackers to obtain access via a brute-force attack.
Published: 2013-08-09
Score: 4.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2013-3968 The RAKP protocol support in the Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) and Integrated Management Module II (IMM2) on IBM BladeCenter, Flex System, System x iDataPlex, and System x3### servers sends a password hash to the client, which makes it easier for remote attackers to obtain access via a brute-force attack.
History

No history.

Subscriptions

Ibm Bladecenter Flex System X220 Compute Node Flex System X240 Compute Node Flex System X440 Compute Node System X3100 M4 System X3200 M3 System X3250 M3 System X3250 M4 System X3400 M2 System X3400 M3 System X3500 M2 System X3500 M3 System X3500 M4 System X3530 M4 System X3550 M2 System X3550 M3 System X3550 M4 System X3620 M3 System X3630 M3 System X3630 M4 System X3650 M2 System X3650 M3 System X3650 M4 System X3690 X5 System X3750 M4 System X3850 X5 System X3950 X5 System X Idataplex Dx360 M2 Server System X Idataplex Dx360 M3 Server System X Idataplex Dx360 M4 Server
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2024-08-06T16:30:49.830Z

Reserved: 2013-06-07T00:00:00.000Z

Link: CVE-2013-4037

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2013-08-09T23:55:02.863

Modified: 2025-04-11T00:51:21.963

Link: CVE-2013-4037

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses