Use of hard-coded key in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.47 may allow authenticated user to potentially enable information disclosure via local access.
References
Link | Resource |
---|---|
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00434.html | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2021-02-17 14:15
Updated : 2021-02-22 20:43
NVD link : CVE-2020-12376
Mitre link : CVE-2020-12376
CVE.ORG link : CVE-2020-12376
JSON object : View
Products Affected
intel
- r2224wfqzs
- r2308wftzs
- hns2600bpblc24r
- hns2600bps24
- r2208wfqzsr
- hns2600bps
- hns2600bps24r
- s2600bpqr
- r2208wftzsr
- s2600bpsr
- hns2600bpq24
- s2600wf0
- r1208wftysr
- r2208wf0zs
- r2312wftzsr
- r2312wftzs
- s2600stb
- hns2600bpq24r
- hns2600bpsr
- r1304wftysr
- r1304wf0ys
- r2208wfqzs
- s2600stq
- r1208wfqysr
- hns2600bpb24
- r1208wftys
- hns2600bpq
- r2312wfqzs
- r2312wf0npr
- bmc_firmware
- hns2600bpblc24
- r1304wftys
- r1304wf0ysr
- r2224wftzsr
- s2600bpbr
- hns2600bpb24r
- hns2600bpqr
- r2208wftzs
- hns2600bpblc
- r2208wf0zsr
- hns2600bpbr
- r2312wf0np
- hns2600bpb
- r1000wf
- r2224wftzs
- s2600wfq
- r2308wftzsr
- s2600wft
CWE
CWE-798
Use of Hard-coded Credentials