Use of hard-coded key in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.47 may allow authenticated user to potentially enable information disclosure via local access.
References
Link | Resource |
---|---|
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00434.html | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2021-02-17 06:15
Updated : 2021-02-22 12:43
NVD link : CVE-2020-12376
Mitre link : CVE-2020-12376
JSON object : View
CWE
CWE-798
Use of Hard-coded Credentials
Products Affected
intel
- hns2600bpb24r
- hns2600bpsr
- s2600wf0
- hns2600bpb24
- r2224wftzs
- r2224wfqzs
- hns2600bps
- r2312wfqzs
- r2308wftzsr
- r1208wftysr
- s2600stb
- s2600wft
- s2600bpqr
- r2312wftzs
- r2208wfqzsr
- r2312wf0np
- s2600bpsr
- hns2600bpbr
- r2208wf0zs
- r1000wf
- hns2600bpq24
- bmc_firmware
- hns2600bpblc
- r1208wfqysr
- r2308wftzs
- r2312wf0npr
- r1208wftys
- r1304wf0ysr
- r2208wftzsr
- hns2600bps24r
- r1304wftysr
- hns2600bpblc24
- hns2600bpblc24r
- hns2600bpq24r
- r2224wftzsr
- hns2600bpq
- r2208wftzs
- r2312wftzsr
- r1304wftys
- hns2600bpb
- s2600stq
- r1304wf0ys
- r2208wfqzs
- hns2600bps24
- r2208wf0zsr
- hns2600bpqr
- s2600wfq
- s2600bpbr