24,650 internet-exposed server management chips (iLO/iDRAC/IPMI) hand a crackable password hash to anyone, before login. No patch exists: it is how the protocol authenticates. Get them off the interne
24,650 internet-exposed server management chips (iLO/iDRAC/IPMI) hand a crackable password hash to anyone, before login. No patch exists: it is how the protocol authenticates. Get them off the internet and rotate factory passwords. (CVE-2013-4786) https:// suriq.io/blog/exposed-bmc-ipmi -password-hash-leak # CVE # DataBreach # Phishing # infosec