BMC firmware (IBM Power System S821LC Server (8001-12C) OP825.50) configuration changed to allow an authenticated user to open an insecure communication channel which could allow an attacker to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 205267.
References
Link | Resource |
---|---|
https://www.ibm.com/support/pages/node/6520420 | Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/205267 | VDB Entry Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Information
Published : 2021-12-15 12:15
Updated : 2021-12-20 16:37
NVD link : CVE-2021-29847
Mitre link : CVE-2021-29847
JSON object : View
CWE
Products Affected
ibm
- power_hardware_management_console_\(7063-cr1\)
- power_system_cs822lc_\(8005-22n\)
- power_system_cs821lc_\(8005-12n\)
- power_system_cs821lc_\(8005-12n\)_firmware
- power_system_s822lc_\(8001-22c\)_firmware
- power_system_s821lc_\(8001-12c\)
- power_system_s821lc_\(8001-12c\)_firmware
- power_system_s822lc_\(8001-22c\)
- power_system_cs822lc_\(8005-22n\)_firmware
- power_hardware_management_console_\(7063-cr1\)_firmware