CVE-2013-4030
Estado: ModificadaMedia (4.3)—
Integrated Management Module (IMM) 2 1.00 through 2.00 on IBM System X and Flex System servers supports SSL cipher suites with short keys, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via a brute-force attack against (1) SSL or (2) TLS traffic.
CVSS
- Versión: 2.0
- Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N
- Puntuación base: 4.3
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.95%
- Percentil entre todas las CVEs puntuadas: 60
- Fecha de la puntuación: 2/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (31)
IBM — BladecenterIBM — Flex System Manager Node 7955IBM — Flex System Manager Node 8731IBM — Flex System Manager Node 8734IBM — Flex System X220 Compute NodeIBM — Flex System X240 Compute NodeIBM — Flex System X440 Compute NodeIBM — Integrated Management Module 2IBM — System X3100 M4IBM — System X3250 M4IBM — System X3300 M4IBM — System X3500 M2IBM — System X3500 M3IBM — System X3500 M4IBM — System X3530 M4IBM — System X3550 M2IBM — System X3550 M3IBM — System X3550 M4IBM — System X3630 M3IBM — System X3630 M4IBM — System X3630 M4 HDIBM — System X3650 M2IBM — System X3650 M3IBM — System X3650 M4IBM — System X3650 M4 HDIBM — System X3690 X5IBM — System X3750 M4IBM — System X3850 X5IBM — System X3950 X5IBM — System X Idataplex Direct Water Cooled Dx360 M4 ServerIBM — System X Idataplex Dx360 M4 Server
CWE
- CWE-310
Referencias
- http://www.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_avoiding_weak_ssl_tls_encryption_in_ibm_system_x_and_flex_systems_cve_2013_40301
- https://exchange.xforce.ibmcloud.com/vulnerabilities/86068
- http://www.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_avoiding_weak_ssl_tls_encryption_in_ibm_system_x_and_flex_systems_cve_2013_40301
- https://exchange.xforce.ibmcloud.com/vulnerabilities/86068
JSON original (NVD)
Mostrar
{
"id": "CVE-2013-4030",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 4.3,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N",
"authentication": "NONE",
"integrityImpact": "PARTIAL",
"accessComplexity": "MEDIUM",
"availabilityImpact": "NONE",
"confidentialityImpact": "NONE"
},
"acInsufInfo": false,
"impactScore": 2.9,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 8.6,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "psirt@us.ibm.com",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2014-01-21T01:55:03.480",
"references": [
{
"url": "http://www.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_avoiding_weak_ssl_tls_encryption_in_ibm_system_x_and_flex_systems_cve_2013_40301",
"tags": [
"Vendor Advisory"
],
"source": "psirt@us.ibm.com"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/86068",
"source": "psirt@us.ibm.com"
},
{
"url": "http://www.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_avoiding_weak_ssl_tls_encryption_in_ibm_system_x_and_flex_systems_cve_2013_40301",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/86068",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-310"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Integrated Management Module (IMM) 2 1.00 through 2.00 on IBM System X and Flex System servers supports SSL cipher suites with short keys, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via a brute-force attack against (1) SSL or (2) TLS traffic."
},
{
"lang": "es",
"value": "Integrated Management Module (IMM) 2 1.00 hasta 2.00 de los servidores IBM System X y Flex System soporta conjuntos de cifrado SSL con claves cortas, lo que hace que sea más fácil para los atacantes remotos romper la proteccion criptografica de los mecanismos de de cifrado a través de (1) un ataque de fuerza bruta contra SSL o (2) El tráfico TLS."
}
],
"lastModified": "2026-06-16T23:56:14.533",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:ibm:integrated_management_module_2:1.00:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "365DA842-58EB-422E-9DE2-EDCA63BE0600"
},
{
"criteria": "cpe:2.3:h:ibm:integrated_management_module_2:2.00:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3ACD330F-69B2-4C9C-AF1E-14DDC84B6C68"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:ibm:bladecenter:hs23:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A633BBA0-4330-41DE-AAAE-D568D9E7442D"
},
{
"criteria": "cpe:2.3:h:ibm:bladecenter:hs23e:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "8644F48F-5032-48CB-B921-0CCC8E233347"
},
{
"criteria": "cpe:2.3:h:ibm:flex_system_manager_node_7955:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E3A537D2-61E1-44D1-BDCC-250E4FD42CAC"
},
{
"criteria": "cpe:2.3:h:ibm:flex_system_manager_node_8731:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A37D3256-F4C1-46B6-9168-C572321DDF60"
},
{
"criteria": "cpe:2.3:h:ibm:flex_system_manager_node_8734:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C0C453D5-F8D3-4945-9880-61743E1949C4"
},
{
"criteria": "cpe:2.3:h:ibm:flex_system_x220_compute_node:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E0DCE85E-FB2D-49D4-863F-5D3458A674D5"
},
{
"criteria": "cpe:2.3:h:ibm:flex_system_x240_compute_node:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0BF9E83E-9526-49EC-8B32-4E896C1DFD54"
},
{
"criteria": "cpe:2.3:h:ibm:flex_system_x440_compute_node:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "BB89722F-2C12-49A8-9A6E-02842EBF77B3"
},
{
"criteria": "cpe:2.3:h:ibm:system_x_idataplex_direct_water_cooled_dx360_m4_server:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4EA69662-2ED2-4CA7-BE7B-DEA1380A9EF5"
},
{
"criteria": "cpe:2.3:h:ibm:system_x_idataplex_dx360_m4_server:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7E4ABB5B-C1F0-4FEE-9879-3F9E023D5AA6"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3100_m4:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B66DB82A-0FF6-452B-8B11-239BF391AD12"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3250_m4:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F3672040-7C51-4C83-A62C-096B2B0E5289"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3300_m4:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FD693FE0-9B91-4F52-AE89-C82ED55DE43C"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3500_m2:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "69ED256E-420A-42D7-B5EC-301097A4020F"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3500_m3:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "02507B59-A854-43B1-B14D-E0CEA10FF62A"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3500_m4:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F943B01A-635B-4F62-96DE-715FFA007AA9"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3530_m4:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "5DAFFBE1-E343-4DCB-A44D-2E29C547CC28"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3550_m2:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "247AFC7C-CAF6-46C5-82A4-7DF045C2E9D7"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3550_m3:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A6E33754-643B-41FD-A751-4E1A029EFBD8"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3550_m4:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "98F407F5-EF7C-4F65-8978-3FB80CB07C06"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3630_m3:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F76C31D7-C2FF-4DAA-88DB-99EFE7E0BA83"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3630_m4:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E3B656E6-B70F-49AB-B17C-F89849CA516E"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3630_m4_hd:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "46A6BD72-DC1E-4760-AFEE-9D1C8EE1C97F"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3650_m2:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C58073F4-505F-466B-A2F2-B13B70F3A78F"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3650_m3:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4CE88C85-1397-447D-9352-9609571E62B0"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3650_m4:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "521ED7F3-84FD-4D6C-9EEE-83A52734602A"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3650_m4_hd:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "44DF5766-53F1-4AE8-AB8F-97C0F36215B7"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3690_x5:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3230D6FE-71DC-474E-94FE-0052C94AEFA4"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3750_m4:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "268FEAB9-EEB1-4B00-A086-1185B0A35959"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3850_x5:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "06A7021F-5D6E-4FCB-A155-5EDC76B78167"
},
{
"criteria": "cpe:2.3:h:ibm:system_x3950_x5:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "86142DE9-2C91-4FCB-9A1B-39AB541C05F5"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
],
"sourceIdentifier": "psirt@us.ibm.com"
}