Lucene search

K
prionPRIOn knowledge basePRION:CVE-2013-4786
HistoryJul 08, 2013 - 10:55 p.m.

Authentication flaw

2013-07-0822:55:00
PRIOn knowledge base
www.prio-n.com
19

7.1 High

AI Score

Confidence

Low

0.24 Low

EPSS

Percentile

96.6%

The IPMI 2.0 specification supports RMCP+ Authenticated Key-Exchange Protocol (RAKP) authentication, which allows remote attackers to obtain password hashes and conduct offline password guessing attacks by obtaining the HMAC from a RAKP message 2 response from a BMC.

7.1 High

AI Score

Confidence

Low

0.24 Low

EPSS

Percentile

96.6%