Vulnerability Description
BMC firmware (IBM Power System S821LC Server (8001-12C) OP825.50) configuration changed to allow an authenticated user to open an insecure communication channel which could allow an attacker to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 205267.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Power Hardware Management Console \(7063-Cr1\) Firmware | < op825.51 |
| Ibm | Power Hardware Management Console \(7063-Cr1\) | - |
| Ibm | Power System Cs822Lc \(8005-22N\) Firmware | < op825.51 |
| Ibm | Power System Cs822Lc \(8005-22N\) | - |
| Ibm | Power System Cs821Lc \(8005-12N\) Firmware | < op825.51 |
| Ibm | Power System Cs821Lc \(8005-12N\) | - |
| Ibm | Power System S822Lc \(8001-22C\) Firmware | < op825.51 |
| Ibm | Power System S822Lc \(8001-22C\) | - |
| Ibm | Power System S821Lc \(8001-12C\) Firmware | < op825.51 |
| Ibm | Power System S821Lc \(8001-12C\) | - |
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/205267VDB EntryVendor Advisory
- https://www.ibm.com/support/pages/node/6520420Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/205267VDB EntryVendor Advisory
- https://www.ibm.com/support/pages/node/6520420Vendor Advisory
FAQ
What is CVE-2021-29847?
CVE-2021-29847 is a vulnerability with a CVSS score of 5.9 (MEDIUM). BMC firmware (IBM Power System S821LC Server (8001-12C) OP825.50) configuration changed to allow an authenticated user to open an insecure communication channel which could allow an attacker to obtain...
How severe is CVE-2021-29847?
CVE-2021-29847 has been rated MEDIUM with a CVSS base score of 5.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-29847?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Power Hardware Management Console \(7063-Cr1\) Firmware, Ibm Power Hardware Management Console \(7063-Cr1\), Ibm Power System Cs822Lc \(8005-22N\) Firmware, Ibm Power System Cs822Lc \(8005-22N\), Ibm Power System Cs821Lc \(8005-12N\) Firmware.