HIGH · 10.0

CVE-2013-4031

The Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) and Integrated Management Module II (IMM2) on IBM BladeCenter, Flex System, System x iDataPlex...

Vulnerability Description

The Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) and Integrated Management Module II (IMM2) on IBM BladeCenter, Flex System, System x iDataPlex, and System x3### servers has a default password for the IPMI user account, which makes it easier for remote attackers to perform power-on, power-off, or reboot actions, or add or modify accounts, via unspecified vectors.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
IbmBladecenterhs22
IbmFlex System X220 Compute Node-
IbmFlex System X240 Compute Node-
IbmFlex System X440 Compute Node-
IbmSystem X Idataplex Dx360 M2 Server-
IbmSystem X Idataplex Dx360 M3 Server-
IbmSystem X Idataplex Dx360 M4 Server-
IbmSystem X3100 M4-
IbmSystem X3200 M3-
IbmSystem X3250 M3-
IbmSystem X3250 M4-
IbmSystem X3400 M2-
IbmSystem X3400 M3-
IbmSystem X3500 M2-
IbmSystem X3500 M3-
IbmSystem X3500 M4-
IbmSystem X3530 M4-
IbmSystem X3550 M2-
IbmSystem X3550 M3-
IbmSystem X3550 M4-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2013-4031?

CVE-2013-4031 is a vulnerability with a CVSS score of 10.0 (HIGH). The Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) and Integrated Management Module II (IMM2) on IBM BladeCenter, Flex System, System x iDataPlex...

How severe is CVE-2013-4031?

CVE-2013-4031 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2013-4031?

Check the references section above for vendor advisories and patch information. Affected products include: Ibm Bladecenter, Ibm Flex System X220 Compute Node, Ibm Flex System X240 Compute Node, Ibm Flex System X440 Compute Node, Ibm System X Idataplex Dx360 M2 Server.