Information Disclosure Vulnerability in IBM BladeCenter AMM Firmware
CVE-2010-2656
Currently unrated
What is CVE-2010-2656?
The IBM BladeCenter with Advanced Management Module (AMM) firmware, specifically build BPET48L and potentially earlier versions, has a critical issue concerning insufficient access controls. This vulnerability permits local or remote attackers to access and retrieve sensitive files, such as logs and core dumps, by making direct requests to stored files within the web root directory. This exposure could lead to significant data leaks and unauthorized system interactions if exploited.