The RAKP protocol support in the Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) and Integrated Management Module II (IMM2) on IBM BladeCenter, Flex System, System x iDataPlex, and System x3### servers sends a password hash to the client, which makes it easier for remote attackers to obtain access via a brute-force attack.
Link | Tags |
---|---|
http://www.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5093463 | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/86173 | vdb entry |