CVE-2004-2600 - CVE House
Back to Database
Status published Medium CVE-2004-2600

The firmware for Intelligent Platform Management Interface (IPMI) 1.5-based Intel...

Vulnerability Description

The firmware for Intelligent Platform Management Interface (IPMI) 1.5-based Intel Server Boards and Platforms is shipped with an Authentication Type Enables parameter set to an invalid None parameter, which allows remote attackers to obtain sensitive information when LAN management functionality is enabled.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2004-2600

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

cli auto-configuration utility, client system setup utility, server configuration wizard, server control, system setup utility, carrier grade server tigpr2u, carrier grade server tsrlt2, carrier grade server tsrmt2, carrier grade server cc2300, carrier grade server cc3300, carrier grade server cc3310, entry server board se7210tp1-e, entry server platform sr1325tp1-e, server board scb2, server board sds2, server board se7500wv2, server board se7501hg2, server board shg2, server platform spsh4, server platform sr870bh2, server platform sr870bn4, server platform srsh4
Vulnerable Versions:
a6898a, a6899a, a6900a, a6901a, a9862a, a9863a

Timeline

Official Publish: November 29th, 2005
Last Modified: August 8th, 2024
Added to House: July 18th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.