CVE-2021-29847

BMC firmware (IBM Power System S821LC Server (8001-12C) OP825.50) configuration changed to allow an authenticated user to open an insecure communication channel which could allow an attacker to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 205267.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ibm:power_hardware_management_console_\(7063-cr1\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_hardware_management_console_\(7063-cr1\):-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:ibm:power_system_cs822lc_\(8005-22n\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_cs822lc_\(8005-22n\):-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:ibm:power_system_cs821lc_\(8005-12n\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_cs821lc_\(8005-12n\):-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:ibm:power_system_s822lc_\(8001-22c\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s822lc_\(8001-22c\):-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:ibm:power_system_s821lc_\(8001-12c\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s821lc_\(8001-12c\):-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-12-15 20:15

Updated : 2024-02-28 18:48


NVD link : CVE-2021-29847

Mitre link : CVE-2021-29847

CVE.ORG link : CVE-2021-29847


JSON object : View

Products Affected

ibm

  • power_hardware_management_console_\(7063-cr1\)
  • power_system_cs821lc_\(8005-12n\)_firmware
  • power_hardware_management_console_\(7063-cr1\)_firmware
  • power_system_cs822lc_\(8005-22n\)
  • power_system_s821lc_\(8001-12c\)
  • power_system_s822lc_\(8001-22c\)_firmware
  • power_system_s821lc_\(8001-12c\)_firmware
  • power_system_cs822lc_\(8005-22n\)_firmware
  • power_system_cs821lc_\(8005-12n\)
  • power_system_s822lc_\(8001-22c\)