CVE-2019-4169

IBM Open Power Firmware OP910 and OP920 could allow access to BMC via IPMI using default OpenBMC password even after BMC password was changed away from the default password. IBM X-Force ID: 158702.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ibm:open_power:op910:*:*:*:*:*:*:*
OR cpe:2.3:h:ibm:power_system_8335-gth:-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_8335-gtx:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:ibm:open_power:op920:*:*:*:*:*:*:*
OR cpe:2.3:h:ibm:power_system_8335-gtc:-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_8335-gtg:-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_8335-gtw:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:43

Type Values Removed Values Added
References () http://www.ibm.com/support/docview.wss?uid=ibm10881209 - Vendor Advisory () http://www.ibm.com/support/docview.wss?uid=ibm10881209 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/158702 - VDB Entry, Vendor Advisory () https://exchange.xforce.ibmcloud.com/vulnerabilities/158702 - VDB Entry, Vendor Advisory

Information

Published : 2019-08-26 15:15

Updated : 2024-11-21 04:43


NVD link : CVE-2019-4169

Mitre link : CVE-2019-4169

CVE.ORG link : CVE-2019-4169


JSON object : View

Products Affected

ibm

  • power_system_8335-gth
  • open_power
  • power_system_8335-gtx
  • power_system_8335-gtc
  • power_system_8335-gtg
  • power_system_8335-gtw
CWE
CWE-1188

Insecure Default Initialization of Resource