CVE-2013-4037

The RAKP protocol support in the Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) and Integrated Management Module II (IMM2) on IBM BladeCenter, Flex System, System x iDataPlex, and System x3### servers sends a password hash to the client, which makes it easier for remote attackers to obtain access via a brute-force attack.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
ibmCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 44%
VendorProductVersion
ibmflex_system_x220_compute_node
-
ibmflex_system_x240_compute_node
-
ibmflex_system_x440_compute_node
-
ibmsystem_x_idataplex_dx360_m2_server
-
ibmsystem_x_idataplex_dx360_m3_server
-
ibmsystem_x_idataplex_dx360_m4_server
-
ibmsystem_x3100_m4
-
ibmsystem_x3200_m3
-
ibmsystem_x3250_m3
-
ibmsystem_x3250_m4
-
ibmsystem_x3400_m2
-
ibmsystem_x3400_m3
-
ibmsystem_x3500_m2
-
ibmsystem_x3500_m3
-
ibmsystem_x3500_m4
-
ibmsystem_x3530_m4
-
ibmsystem_x3550_m2
-
ibmsystem_x3550_m3
-
ibmsystem_x3550_m4
-
ibmsystem_x3620_m3
-
ibmsystem_x3630_m3
-
ibmsystem_x3630_m4
-
ibmsystem_x3650_m2
-
ibmsystem_x3650_m3
-
ibmsystem_x3650_m4
-
ibmsystem_x3690_x5
-
ibmsystem_x3750_m4
-
ibmsystem_x3850_x5
-
ibmsystem_x3950_x5
-
𝑥
= Vulnerable software versions