CVE-2004-2600
The firmware for Intelligent Platform Management Interface (IPMI) 1.5-based Intel Server Boards and Platforms is shipped with an Authentication Type Enables parameter set to an invalid None parameter, which allows remote attackers to obtain sensitive information when LAN management functionality is enabled.
Published:Dec 31, 2004
Last Modified:Apr 16, 2026
EPS:Nov 29, 2005
EPSS Score:0.01141
CVSS Score:5
Affected Products
Vendor
Product
Action
Vendor
Hp
Product
Carrier Grade Server Cc2300
Hp
Carrier Grade Server Cc2300
Vendor
Hp
Product
Carrier Grade Server Cc3300
Hp
Carrier Grade Server Cc3300
Vendor
Hp
Product
Carrier Grade Server Cc3310
Hp
Carrier Grade Server Cc3310
Vendor
Intel
Product
Carrier Grade Server Tigpr2u
Intel
Carrier Grade Server Tigpr2u
Vendor
Intel
Product
Carrier Grade Server Tsrlt2
Intel
Carrier Grade Server Tsrlt2
Vendor
Intel
Product
Carrier Grade Server Tsrmt2
Intel
Carrier Grade Server Tsrmt2
Vendor
Intel
Product
Cli Auto-configuration Utility
Intel
Cli Auto-configuration Utility
Vendor
Intel
Product
Client System Setup Utility
Intel
Client System Setup Utility
Vendor
Intel
Product
Entry Server Board Se7210tp1-e
Intel
Entry Server Board Se7210tp1-e
Vendor
Intel
Product
Entry Server Platform Sr1325tp1-e
Intel
Entry Server Platform Sr1325tp1-e
Vendor
Intel
Product
Server Board Scb2
Intel
Server Board Scb2
Vendor
Intel
Product
Server Board Sds2
Intel
Server Board Sds2
Vendor
Intel
Product
Server Board Se7500wv2
Intel
Server Board Se7500wv2
Vendor
Intel
Product
Server Board Se7501hg2
Intel
Server Board Se7501hg2
Vendor
Intel
Product
Server Board Shg2
Intel
Server Board Shg2
Vendor
Intel
Product
Server Configuration Wizard
Intel
Server Configuration Wizard
Vendor
Intel
Product
Server Control
Intel
Server Control
Vendor
Intel
Product
Server Platform Spsh4
Intel
Server Platform Spsh4
Vendor
Intel
Product
Server Platform Sr870bh2
Intel
Server Platform Sr870bh2
Vendor
Intel
Product
Server Platform Sr870bn4
Intel
Server Platform Sr870bn4
Vendor
Intel
Product
Server Platform Srsh4
Intel
Server Platform Srsh4
Vendor
Intel
Product
System Setup Utility
Intel
System Setup Utility
Exploits
No exploit reference
Common Weakness Enumeration
No CWE recorded yet
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
