Vulnerability Description
IBM OPENBMC OP920, OP930, and OP940 could allow an unauthenticated user to obtain sensitive information. IBM X-Force ID: 212047.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Power System Ac922 \(8335-Gtx\) Firmware | op920 |
| Ibm | Power System Ac922 \(8335-Gtx\) | - |
| Ibm | Power System Ac922 \(8335-Gth\) Firmware | op920 |
| Ibm | Power System Ac922 \(8335-Gth\) | - |
| Ibm | Power Hardware Management Console \(7063-Cr2\) Firmware | op940 |
| Ibm | Power Hardware Management Console \(7063-Cr2\) | - |
Related Weaknesses (CWE)
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/212047VDB EntryVendor Advisory
- https://www.ibm.com/support/pages/node/6529322Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/212047VDB EntryVendor Advisory
- https://www.ibm.com/support/pages/node/6529322Vendor Advisory
FAQ
What is CVE-2021-38960?
CVE-2021-38960 is a vulnerability with a CVSS score of 7.5 (HIGH). IBM OPENBMC OP920, OP930, and OP940 could allow an unauthenticated user to obtain sensitive information. IBM X-Force ID: 212047.
How severe is CVE-2021-38960?
CVE-2021-38960 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-38960?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Power System Ac922 \(8335-Gtx\) Firmware, Ibm Power System Ac922 \(8335-Gtx\), Ibm Power System Ac922 \(8335-Gth\) Firmware, Ibm Power System Ac922 \(8335-Gth\), Ibm Power Hardware Management Console \(7063-Cr2\) Firmware.