« Volver al listado

CVE-2004-2600

Estado: ModificadaMedia (5)—

The firmware for Intelligent Platform Management Interface (IPMI) 1.5-based Intel Server Boards and Platforms is shipped with an Authentication Type Enables parameter set to an invalid None parameter, which allows remote attackers to obtain sensitive information when LAN management functionality is enabled.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (22)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2004-2600",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "NONE",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2004-12-31T05:00:00.000",
  "references": [
    {
      "url": "ftp://download.intel.com/support/motherboards/server/sb/aa6791invalidlanconfiguration040504.pdf",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://secunia.com/advisories/11315",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://support.intel.com/support/motherboards/server/sb/CS-010422.htm",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.osvdb.org/4978",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/10068",
      "source": "cve@mitre.org"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/15775",
      "source": "cve@mitre.org"
    },
    {
      "url": "ftp://download.intel.com/support/motherboards/server/sb/aa6791invalidlanconfiguration040504.pdf",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/11315",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://support.intel.com/support/motherboards/server/sb/CS-010422.htm",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.osvdb.org/4978",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/10068",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/15775",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The firmware for Intelligent Platform Management Interface (IPMI) 1.5-based Intel Server Boards and Platforms is shipped with an Authentication Type Enables parameter set to an invalid None parameter, which allows remote attackers to obtain sensitive information when LAN management functionality is enabled."
    }
  ],
  "lastModified": "2026-06-16T22:09:57.510",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:intel:cli_auto-configuration_utility:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "DC9C0929-86A5-4745-8594-6D2ABE893160"
            },
            {
              "criteria": "cpe:2.3:a:intel:client_system_setup_utility:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "25AD73CC-DB7A-4F76-A654-264FF892D7FD"
            },
            {
              "criteria": "cpe:2.3:a:intel:server_configuration_wizard:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "43F662AC-9F90-485C-B4EC-50729055ED81"
            },
            {
              "criteria": "cpe:2.3:a:intel:server_control:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "CC69514F-5F56-411A-85D1-553CA06D6393"
            },
            {
              "criteria": "cpe:2.3:a:intel:system_setup_utility:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "C096ECA2-B75C-4270-A4E0-915FEB6B8043"
            },
            {
              "criteria": "cpe:2.3:h:intel:carrier_grade_server_tigpr2u:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "93EBE6FC-77E4-4444-A378-9A82326D5867"
            },
            {
              "criteria": "cpe:2.3:h:intel:carrier_grade_server_tsrlt2:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "11B0E433-8C78-48A1-B29B-5FFFDEF1C072"
            },
            {
              "criteria": "cpe:2.3:h:intel:carrier_grade_server_tsrmt2:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A80FF61B-35B9-4829-91C6-569E7FD3BFC5"
            }
          ],
          "operator": "OR"
        }
      ]
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:hp:carrier_grade_server_cc2300:a6898a:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "C4C19796-0267-4D57-AB95-F57AEF5A71AB"
            },
            {
              "criteria": "cpe:2.3:h:hp:carrier_grade_server_cc2300:a6899a:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "0F2332D3-3F29-4A86-89C5-85D5B5AF7EB1"
            },
            {
              "criteria": "cpe:2.3:h:hp:carrier_grade_server_cc3300:a6900a:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5622C2AA-848F-4F1C-A6B5-17400EE8D6D3"
            },
            {
              "criteria": "cpe:2.3:h:hp:carrier_grade_server_cc3300:a6901a:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "3C6B394D-8FB5-46DB-B188-8BDF8A6664B9"
            },
            {
              "criteria": "cpe:2.3:h:hp:carrier_grade_server_cc3310:a9862a:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "26BA02BA-76CB-4C21-A1F4-562DFAFD6E21"
            },
            {
              "criteria": "cpe:2.3:h:hp:carrier_grade_server_cc3310:a9863a:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "9A8373A0-9705-4AF1-92DA-B1FA2FFBE2FD"
            },
            {
              "criteria": "cpe:2.3:h:intel:entry_server_board_se7210tp1-e:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "F4205D11-F8F8-41F9-8094-FF111A8DCC6E"
            },
            {
              "criteria": "cpe:2.3:h:intel:entry_server_platform_sr1325tp1-e:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "AFC6FAE8-E508-45C5-A83E-0D2881977837"
            },
            {
              "criteria": "cpe:2.3:h:intel:server_board_scb2:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "B5BDA184-5403-4E1F-A1D7-BC34284D591A"
            },
            {
              "criteria": "cpe:2.3:h:intel:server_board_sds2:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "AF71532C-13A1-44CE-BFC3-660320E16217"
            },
            {
              "criteria": "cpe:2.3:h:intel:server_board_se7500wv2:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "329A7174-7400-47D8-8088-68C68C3EC768"
            },
            {
              "criteria": "cpe:2.3:h:intel:server_board_se7501hg2:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "02605733-0FD4-418E-AD7E-4A0783B056E7"
            },
            {
              "criteria": "cpe:2.3:h:intel:server_board_shg2:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "4C8F6BF2-E056-4630-97FC-70D60784FC8C"
            },
            {
              "criteria": "cpe:2.3:h:intel:server_platform_spsh4:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E3E28B33-A09D-451C-9DB8-15710CEF96E3"
            },
            {
              "criteria": "cpe:2.3:h:intel:server_platform_sr870bh2:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "4ABD9F57-87A6-4347-A211-E45F43688DBD"
            },
            {
              "criteria": "cpe:2.3:h:intel:server_platform_sr870bn4:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "AD988002-5D12-423B-8F9E-868647F29DEF"
            },
            {
              "criteria": "cpe:2.3:h:intel:server_platform_srsh4:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "48B34000-BD33-4AE0-9C40-A2ED5BF5E257"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}