Cleartext Password Storage Vulnerability in IBM BladeCenter and System x Servers
CVE-2013-4038
Currently unrated
Key Information:
- Vendor
- IBM
- Vendor
- CVE Published:
- 9 August 2013
Summary
The Intelligent Platform Management Interface (IPMI) implementation in the Integrated Management Module (IMM) of various IBM server models exposes sensitive data due to storing passwords in cleartext. This design flaw allows authorized users to access sensitive information by simply reading a file, making it possible for context-dependent attackers to exploit this weakness and potentially compromise system integrity.
References
Timeline
Vulnerability published
Vulnerability Reserved