IBM Baseboard Management Controller Default Credentials

critical Nessus Plugin ID 39364

Synopsis

The remote management client is protected with a default password.

Description

The remote host appears to be an IBM Baseboard Management Controller (BMC), which is used to provide out-of-band management.

The remote BMC is protected with the default password.

Solution

Replace the default password with a strong password.

Plugin Details

Severity: Critical

ID: 39364

File Name: ibm_bmc_default_login.nbin

Version: 1.77

Type: remote

Family: Misc.

Published: 6/11/2009

Updated: 3/19/2024

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

Excluded KB Items: global_settings/supplied_logins_only

Exploit Available: true

Exploit Ease: No exploit is required