CVE-2004-2600
Estado: ModificadaMedia (5)—
The firmware for Intelligent Platform Management Interface (IPMI) 1.5-based Intel Server Boards and Platforms is shipped with an Authentication Type Enables parameter set to an invalid None parameter, which allows remote attackers to obtain sensitive information when LAN management functionality is enabled.
CVSS
- Versión: 2.0
- Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N
- Puntuación base: 5
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 2.63%
- Percentil entre todas las CVEs puntuadas: 85
- Fecha de la puntuación: 2/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (22)
HP — Carrier Grade Server Cc2300HP — Carrier Grade Server Cc3300HP — Carrier Grade Server Cc3310Intel — Carrier Grade Server Tigpr2uIntel — Carrier Grade Server Tsrlt2Intel — Carrier Grade Server Tsrmt2Intel — CLI Auto-configuration UtilityIntel — Client System Setup UtilityIntel — Entry Server Board Se7210tp1-eIntel — Entry Server Platform Sr1325tp1-eIntel — Server Board Scb2Intel — Server Board Sds2Intel — Server Board Se7500wv2Intel — Server Board Se7501hg2Intel — Server Board Shg2Intel — Server Configuration WizardIntel — Server ControlIntel — Server Platform Spsh4Intel — Server Platform Sr870bh2Intel — Server Platform Sr870bn4Intel — Server Platform Srsh4Intel — System Setup Utility
CWE
- NVD-CWE-Other
Referencias
- ftp://download.intel.com/support/motherboards/server/sb/aa6791invalidlanconfiguration040504.pdf
- http://secunia.com/advisories/11315
- http://support.intel.com/support/motherboards/server/sb/CS-010422.htm
- http://www.osvdb.org/4978
- http://www.securityfocus.com/bid/10068
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15775
- ftp://download.intel.com/support/motherboards/server/sb/aa6791invalidlanconfiguration040504.pdf
- http://secunia.com/advisories/11315
- http://support.intel.com/support/motherboards/server/sb/CS-010422.htm
- http://www.osvdb.org/4978
- http://www.securityfocus.com/bid/10068
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15775
JSON original (NVD)
Mostrar
{
"id": "CVE-2004-2600",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 5,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
"authentication": "NONE",
"integrityImpact": "NONE",
"accessComplexity": "LOW",
"availabilityImpact": "NONE",
"confidentialityImpact": "PARTIAL"
},
"acInsufInfo": false,
"impactScore": 2.9,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 10,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2004-12-31T05:00:00.000",
"references": [
{
"url": "ftp://download.intel.com/support/motherboards/server/sb/aa6791invalidlanconfiguration040504.pdf",
"tags": [
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/11315",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "http://support.intel.com/support/motherboards/server/sb/CS-010422.htm",
"source": "cve@mitre.org"
},
{
"url": "http://www.osvdb.org/4978",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/10068",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/15775",
"source": "cve@mitre.org"
},
{
"url": "ftp://download.intel.com/support/motherboards/server/sb/aa6791invalidlanconfiguration040504.pdf",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://secunia.com/advisories/11315",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://support.intel.com/support/motherboards/server/sb/CS-010422.htm",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.osvdb.org/4978",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/10068",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/15775",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "The firmware for Intelligent Platform Management Interface (IPMI) 1.5-based Intel Server Boards and Platforms is shipped with an Authentication Type Enables parameter set to an invalid None parameter, which allows remote attackers to obtain sensitive information when LAN management functionality is enabled."
}
],
"lastModified": "2026-06-16T22:09:57.510",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:intel:cli_auto-configuration_utility:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "DC9C0929-86A5-4745-8594-6D2ABE893160"
},
{
"criteria": "cpe:2.3:a:intel:client_system_setup_utility:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "25AD73CC-DB7A-4F76-A654-264FF892D7FD"
},
{
"criteria": "cpe:2.3:a:intel:server_configuration_wizard:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "43F662AC-9F90-485C-B4EC-50729055ED81"
},
{
"criteria": "cpe:2.3:a:intel:server_control:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CC69514F-5F56-411A-85D1-553CA06D6393"
},
{
"criteria": "cpe:2.3:a:intel:system_setup_utility:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C096ECA2-B75C-4270-A4E0-915FEB6B8043"
},
{
"criteria": "cpe:2.3:h:intel:carrier_grade_server_tigpr2u:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "93EBE6FC-77E4-4444-A378-9A82326D5867"
},
{
"criteria": "cpe:2.3:h:intel:carrier_grade_server_tsrlt2:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "11B0E433-8C78-48A1-B29B-5FFFDEF1C072"
},
{
"criteria": "cpe:2.3:h:intel:carrier_grade_server_tsrmt2:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A80FF61B-35B9-4829-91C6-569E7FD3BFC5"
}
],
"operator": "OR"
}
]
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:hp:carrier_grade_server_cc2300:a6898a:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C4C19796-0267-4D57-AB95-F57AEF5A71AB"
},
{
"criteria": "cpe:2.3:h:hp:carrier_grade_server_cc2300:a6899a:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0F2332D3-3F29-4A86-89C5-85D5B5AF7EB1"
},
{
"criteria": "cpe:2.3:h:hp:carrier_grade_server_cc3300:a6900a:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "5622C2AA-848F-4F1C-A6B5-17400EE8D6D3"
},
{
"criteria": "cpe:2.3:h:hp:carrier_grade_server_cc3300:a6901a:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3C6B394D-8FB5-46DB-B188-8BDF8A6664B9"
},
{
"criteria": "cpe:2.3:h:hp:carrier_grade_server_cc3310:a9862a:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "26BA02BA-76CB-4C21-A1F4-562DFAFD6E21"
},
{
"criteria": "cpe:2.3:h:hp:carrier_grade_server_cc3310:a9863a:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "9A8373A0-9705-4AF1-92DA-B1FA2FFBE2FD"
},
{
"criteria": "cpe:2.3:h:intel:entry_server_board_se7210tp1-e:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F4205D11-F8F8-41F9-8094-FF111A8DCC6E"
},
{
"criteria": "cpe:2.3:h:intel:entry_server_platform_sr1325tp1-e:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AFC6FAE8-E508-45C5-A83E-0D2881977837"
},
{
"criteria": "cpe:2.3:h:intel:server_board_scb2:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B5BDA184-5403-4E1F-A1D7-BC34284D591A"
},
{
"criteria": "cpe:2.3:h:intel:server_board_sds2:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AF71532C-13A1-44CE-BFC3-660320E16217"
},
{
"criteria": "cpe:2.3:h:intel:server_board_se7500wv2:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "329A7174-7400-47D8-8088-68C68C3EC768"
},
{
"criteria": "cpe:2.3:h:intel:server_board_se7501hg2:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "02605733-0FD4-418E-AD7E-4A0783B056E7"
},
{
"criteria": "cpe:2.3:h:intel:server_board_shg2:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4C8F6BF2-E056-4630-97FC-70D60784FC8C"
},
{
"criteria": "cpe:2.3:h:intel:server_platform_spsh4:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E3E28B33-A09D-451C-9DB8-15710CEF96E3"
},
{
"criteria": "cpe:2.3:h:intel:server_platform_sr870bh2:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4ABD9F57-87A6-4347-A211-E45F43688DBD"
},
{
"criteria": "cpe:2.3:h:intel:server_platform_sr870bn4:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AD988002-5D12-423B-8F9E-868647F29DEF"
},
{
"criteria": "cpe:2.3:h:intel:server_platform_srsh4:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "48B34000-BD33-4AE0-9C40-A2ED5BF5E257"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}