4.3

CVE-2013-4037

The RAKP protocol support in the Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) and Integrated Management Module II (IMM2) on IBM BladeCenter, Flex System, System x iDataPlex, and System x3### servers sends a password hash to the client, which makes it easier for remote attackers to obtain access via a brute-force attack.

Data is provided by the National Vulnerability Database (NVD)
IbmBladecenter Versionhs22
IbmBladecenter Versionhs22v
IbmBladecenter Versionhs23
IbmBladecenter Versionhs23e
IbmBladecenter Versionhx5
IbmSystem X3100 M4 Version-
IbmSystem X3200 M3 Version-
IbmSystem X3250 M3 Version-
IbmSystem X3250 M4 Version-
IbmSystem X3400 M2 Version-
IbmSystem X3400 M3 Version-
IbmSystem X3500 M2 Version-
IbmSystem X3500 M3 Version-
IbmSystem X3500 M4 Version-
IbmSystem X3530 M4 Version-
IbmSystem X3550 M2 Version-
IbmSystem X3550 M3 Version-
IbmSystem X3550 M4 Version-
IbmSystem X3620 M3 Version-
IbmSystem X3630 M3 Version-
IbmSystem X3630 M4 Version-
IbmSystem X3650 M2 Version-
IbmSystem X3650 M3 Version-
IbmSystem X3650 M4 Version-
IbmSystem X3690 X5 Version-
IbmSystem X3750 M4 Version-
IbmSystem X3850 X5 Version-
IbmSystem X3950 X5 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.22% 0.414
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:P/A:N