A two-decade-old vulnerability in the Intelligent Platform Management Interface (IPMI) protocol could allow attackers to gain control of thousands of publicly exposed data center servers in just minutes, researchers have warned. The issue affects Baseboard Management Controllers (BMCs), which are privileged processors that enable administrators to manage physical servers remotely, even when the operating system is offline. BMCs can reboot systems, mount virtual media, access remote consoles, update firmware, and modify low-level hardware settings. Researchers have identified 36,872 publicly accessible server management interfaces using IPMI on UDP port 623. Among these, 24,650 (66.9%) returned password-derived authentication data...
Read the full article at the source.
Comments (0)
No comments yet. Be the first to comment!