VulnerabilityModified
CVE-2012-2187
IBM Remote Supervisor Adapter II firmware for System x3650, x3850 M2, and x3950 M2 1.13 and earlier generates weak RSA keys, which makes it easier for attackers to defeat cryptographic protection mechanisms via unspecified vectors.
MEDIUM 5.0EPSS 1.13%
Does this matter?
Lower severity and a low EPSS score (1.13%). Track it; it rarely justifies an emergency change on its own.
Description
IBM Remote Supervisor Adapter II firmware for System x3650, x3850 M2, and x3950 M2 1.13 and earlier generates weak RSA keys, which makes it easier for attackers to defeat cryptographic protection mechanisms via unspecified vectors.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 1.13% probability · 65th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-310
- Affected
- ibm/remote supervisor adapter ii firmware
- Source
- psirt@us.ibm.com
References
- http://www.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_weak_key_vulnerability_in_remote_supervisor_adapter_ii_firmware_cve_2012_2187_ibm_system_x3650_system_x3850_m2_system_x3950_m25Vendor Advisory
- http://www.securityfocus.com/bid/55609
- https://www-947.ibm.com/support/entry/myportal/docdisplay?lndocid=MIGR-5091525
- http://www.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_weak_key_vulnerability_in_remote_supervisor_adapter_ii_firmware_cve_2012_2187_ibm_system_x3650_system_x3850_m2_system_x3950_m25Vendor Advisory
- http://www.securityfocus.com/bid/55609
- https://www-947.ibm.com/support/entry/myportal/docdisplay?lndocid=MIGR-5091525
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.