An authentication bypass vulnerability was identified in SMM/SMM2 and FPC that could allow an authenticated user to execute certain IPMI calls that could lead to exposure of limited system information.
Solution:
The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.