CVE-2013-4031
The Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) and Integrated Management Module II (IMM2) on IBM BladeCenter, Flex System, System x iDataPlex, and System x3### servers has a default password for the IPMI user account, which makes it easier for remote attackers to perform power-on, power-off, or reboot actions, or add or modify accounts, via unspecified vectors.
Published:Aug 9, 2013
Last Modified:Apr 11, 2025
EPS:Aug 9, 2013
EPSS Score:0.02507
CVSS Score:10
Affected Products
Vendor
Product
Action
Vendor
Ibm
Product
Bladecenter
Ibm
Bladecenter
Vendor
Ibm
Product
Flex System X220 Compute Node
Ibm
Flex System X220 Compute Node
Vendor
Ibm
Product
Flex System X240 Compute Node
Ibm
Flex System X240 Compute Node
Vendor
Ibm
Product
Flex System X440 Compute Node
Ibm
Flex System X440 Compute Node
Vendor
Ibm
Product
System X3100 M4
Ibm
System X3100 M4
Vendor
Ibm
Product
System X3200 M3
Ibm
System X3200 M3
Vendor
Ibm
Product
System X3250 M3
Ibm
System X3250 M3
Vendor
Ibm
Product
System X3250 M4
Ibm
System X3250 M4
Vendor
Ibm
Product
System X3400 M2
Ibm
System X3400 M2
Vendor
Ibm
Product
System X3400 M3
Ibm
System X3400 M3
Vendor
Ibm
Product
System X3500 M2
Ibm
System X3500 M2
Vendor
Ibm
Product
System X3500 M3
Ibm
System X3500 M3
Vendor
Ibm
Product
System X3500 M4
Ibm
System X3500 M4
Vendor
Ibm
Product
System X3530 M4
Ibm
System X3530 M4
Vendor
Ibm
Product
System X3550 M2
Ibm
System X3550 M2
Vendor
Ibm
Product
System X3550 M3
Ibm
System X3550 M3
Vendor
Ibm
Product
System X3550 M4
Ibm
System X3550 M4
Vendor
Ibm
Product
System X3620 M3
Ibm
System X3620 M3
Vendor
Ibm
Product
System X3630 M3
Ibm
System X3630 M3
Vendor
Ibm
Product
System X3630 M4
Ibm
System X3630 M4
Vendor
Ibm
Product
System X3650 M2
Ibm
System X3650 M2
Vendor
Ibm
Product
System X3650 M3
Ibm
System X3650 M3
Vendor
Ibm
Product
System X3650 M4
Ibm
System X3650 M4
Vendor
Ibm
Product
System X3690 X5
Ibm
System X3690 X5
Vendor
Ibm
Product
System X3750 M4
Ibm
System X3750 M4
Vendor
Ibm
Product
System X3850 X5
Ibm
System X3850 X5
Vendor
Ibm
Product
System X3950 X5
Ibm
System X3950 X5
Vendor
Ibm
Product
System X Idataplex Dx360 M2 Server
Ibm
System X Idataplex Dx360 M2 Server
Vendor
Ibm
Product
System X Idataplex Dx360 M3 Server
Ibm
System X Idataplex Dx360 M3 Server
Vendor
Ibm
Product
System X Idataplex Dx360 M4 Server
Ibm
System X Idataplex Dx360 M4 Server
Exploits
No exploit reference
Common Weakness Enumeration
No CWE recorded yet
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
