- EPSS 0.24%
- Published 07.07.2014 11:01:28
- Last modified 12.04.2025 10:46:40
The firmware before 3.66E in IBM BladeCenter Advanced Management Module (AMM), the firmware before 1.43 in IBM Integrated Management Module (IMM), and the firmware before 4.15 in IBM Integrated Management Module II (IMM2) contains cleartext IPMI cred...
CVE-2013-4007
- EPSS 0.2%
- Published 16.08.2013 01:55:16
- Last modified 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in adv_sw.php in the Advanced Management Module (AMM) with firmware BBET before BBET64G and BPET before BPET64G for IBM BladeCenter systems allows remote attackers to inject arbitrary web script or HTML via un...
CVE-2010-2654
- EPSS 3.44%
- Published 08.07.2010 12:54:47
- Last modified 11.04.2025 00:51:21
Multiple cross-site scripting (XSS) vulnerabilities on the IBM BladeCenter with Advanced Management Module (AMM) firmware build ID BPET48L, and possibly other versions before 4.7 and 5.0, allow remote attackers to inject arbitrary web script or HTML ...
- EPSS 19.09%
- Published 08.07.2010 12:54:47
- Last modified 11.04.2025 00:51:21
Directory traversal vulnerability in private/file_management.php on the IBM BladeCenter with Advanced Management Module (AMM) firmware build ID BPET48L, and possibly other versions before 4.7 and 5.0, allows remote authenticated users to list arbitra...
- EPSS 17.22%
- Published 08.07.2010 12:54:47
- Last modified 11.04.2025 00:51:21
The IBM BladeCenter with Advanced Management Module (AMM) firmware build ID BPET48L, and possibly other versions before 4.7 and 5.0, stores sensitive information under the web root with insufficient access control, which allows remote attackers to do...
- EPSS 3.88%
- Published 16.04.2010 18:30:00
- Last modified 11.04.2025 00:51:21
The IBM BladeCenter with Advanced Management Module (AMM) firmware before bpet50g does not properly perform interrupt sharing for USB and iSCSI, which allows remote attackers to cause a denial of service (management module reboot) via TCP packets wit...