Cleartext Password Storage Vulnerability in IBM BladeCenter and System x Servers
CVE-2013-4038

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
9 August 2013

Summary

The Intelligent Platform Management Interface (IPMI) implementation in the Integrated Management Module (IMM) of various IBM server models exposes sensitive data due to storing passwords in cleartext. This design flaw allows authorized users to access sensitive information by simply reading a file, making it possible for context-dependent attackers to exploit this weakness and potentially compromise system integrity.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.