Vulnerability Details CVE-2021-29847
BMC firmware (IBM Power System S821LC Server (8001-12C) OP825.50) configuration changed to allow an authenticated user to open an insecure communication channel which could allow an attacker to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 205267.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 39.5%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 4.3
Products affected by CVE-2021-29847
-
cpe:2.3:h:ibm:power_hardware_management_console_(7063-cr1):-
-
cpe:2.3:h:ibm:power_system_cs821lc_(8005-12n):-
-
cpe:2.3:h:ibm:power_system_cs822lc_(8005-22n):-
-
cpe:2.3:h:ibm:power_system_s821lc_(8001-12c):-
-
cpe:2.3:h:ibm:power_system_s822lc_(8001-22c):-
-
cpe:2.3:o:ibm:power_hardware_management_console_(7063-cr1)_firmware:-
-
cpe:2.3:o:ibm:power_system_cs821lc_(8005-12n)_firmware:-
-
cpe:2.3:o:ibm:power_system_cs822lc_(8005-22n)_firmware:-
-
cpe:2.3:o:ibm:power_system_s821lc_(8001-12c)_firmware:-
-
cpe:2.3:o:ibm:power_system_s822lc_(8001-22c)_firmware:-