CVE-2004-2600
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD
Description
The firmware for Intelligent Platform Management Interface (IPMI) 1.5-based Intel Server Boards and Platforms is shipped with an Authentication Type Enables parameter set to an invalid None parameter, which allows remote attackers to obtain sensitive information when LAN management functionality is enabled.
Affected (25)
Products: Intel: Carrier Grade Server Tigpr2u, Carrier Grade Server Tsrlt2, Carrier Grade Server Tsrmt2, Cli Auto Configuration Utility, Client System Setup Utility, Server Configuration Wizard, Server Control, System Setup Utility, Entry Server Board Se7210tp1 E, Entry Server Platform Sr1325tp1 E, Server Board Scb2, Server Board Sds2, Server Board Se7500wv2, Server Board Se7501hg2, Server Board Shg2, Server Platform Spsh4, Server Platform Sr870bh2, Server Platform Sr870bn4, Server Platform Srsh4 · Hp: Carrier Grade Server Cc2300, Carrier Grade Server Cc3300, Carrier Grade Server Cc3310
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version a6898a | |
| Version a6900a | |
| Version a9862a | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions |
References (12)
ftp://download.intel.com/support/motherboards/server/sb/aa6791invalidlanconfiguration040504.pdf (unsafe URL)
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
ftp://download.intel.com/support/motherboards/server/sb/aa6791invalidlanconfiguration040504.pdf (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.