VulnerabilityModified
CVE-2013-6718
The Advanced Management Module (AMM) with firmware 3.64B, 3.64C, and 3.64G for IBM BladeCenter systems allows remote attackers to discover account names and passwords via use of an unspecified interface.
MEDIUM 6.4EPSS 1.33%
Does this matter?
Lower severity and a low EPSS score (1.33%). Track it; it rarely justifies an emergency change on its own.
Description
The Advanced Management Module (AMM) with firmware 3.64B, 3.64C, and 3.64G for IBM BladeCenter systems allows remote attackers to discover account names and passwords via use of an unspecified interface.
- CVSS 2.0
- 6.4 MEDIUMAV:N/AC:L/Au:N/C:P/I:P/A:N
- EPSS
- 1.33% probability · 70th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-310
- Affected
- ibm/advanced management module firmware
- Source
- psirt@us.ibm.com
References
- http://osvdb.org/100397
- http://secunia.com/advisories/55921
- http://www.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_ibm_bladecenter_advanced_management_module_account_information_exposure_cve_2013_6718Vendor Advisory
- http://www.securityfocus.com/bid/64032
- https://exchange.xforce.ibmcloud.com/vulnerabilities/89174
- http://osvdb.org/100397
- http://secunia.com/advisories/55921
- http://www.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_ibm_bladecenter_advanced_management_module_account_information_exposure_cve_2013_6718Vendor Advisory
- http://www.securityfocus.com/bid/64032
- https://exchange.xforce.ibmcloud.com/vulnerabilities/89174
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.