MEDIUM · 5.9

CVE-2021-29847

BMC firmware (IBM Power System S821LC Server (8001-12C) OP825.50) configuration changed to allow an authenticated user to open an insecure communication channel which could allow an attacker to obtain...

Vulnerability Description

BMC firmware (IBM Power System S821LC Server (8001-12C) OP825.50) configuration changed to allow an authenticated user to open an insecure communication channel which could allow an attacker to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 205267.

CVSS Score

5.9

MEDIUM

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
IbmPower Hardware Management Console \(7063-Cr1\) Firmware< op825.51
IbmPower Hardware Management Console \(7063-Cr1\)-
IbmPower System Cs822Lc \(8005-22N\) Firmware< op825.51
IbmPower System Cs822Lc \(8005-22N\)-
IbmPower System Cs821Lc \(8005-12N\) Firmware< op825.51
IbmPower System Cs821Lc \(8005-12N\)-
IbmPower System S822Lc \(8001-22C\) Firmware< op825.51
IbmPower System S822Lc \(8001-22C\)-
IbmPower System S821Lc \(8001-12C\) Firmware< op825.51
IbmPower System S821Lc \(8001-12C\)-

References

FAQ

What is CVE-2021-29847?

CVE-2021-29847 is a vulnerability with a CVSS score of 5.9 (MEDIUM). BMC firmware (IBM Power System S821LC Server (8001-12C) OP825.50) configuration changed to allow an authenticated user to open an insecure communication channel which could allow an attacker to obtain...

How severe is CVE-2021-29847?

CVE-2021-29847 has been rated MEDIUM with a CVSS base score of 5.9/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-29847?

Check the references section above for vendor advisories and patch information. Affected products include: Ibm Power Hardware Management Console \(7063-Cr1\) Firmware, Ibm Power Hardware Management Console \(7063-Cr1\), Ibm Power System Cs822Lc \(8005-22N\) Firmware, Ibm Power System Cs822Lc \(8005-22N\), Ibm Power System Cs821Lc \(8005-12N\) Firmware.