CVE-2013-4030 describes a vulnerability in IBM System X and Flex System servers running Integrated Management Module (IMM) 2 versions 1.00 through 2.00. The vulnerability stems from the IMM's support for SSL cipher suites with short keys, making cryptographic protection mechanisms vulnerable to brute-force attacks against SSL or TLS traffic. This vulnerability has a CVSS score of 4.3, indicating medium severity, with a network attack vector and medium attack complexity, potentially leading to integrity compromise (P) without confidentiality or availability impact. There is no evidence of active exploitation, nor is exploit code available in Metasploit, Nuclei, or ExploitDB. The vulnerability has received minimal community discussion and media coverage, which is typical for the vast majority of CVEs.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.00CPE matchmatch criteria | cpe:2.3:h:ibm:integrated_management_module_2:1.00:*:*:*:*:*:*:* | ||
2.00CPE matchmatch criteria | cpe:2.3:h:ibm:integrated_management_module_2:2.00:*:*:*:*:*:*:* | ||
hs23CPE matchmatch criteria | cpe:2.3:h:ibm:bladecenter:hs23:*:*:*:*:*:*:* | ||
hs23eCPE matchmatch criteria | cpe:2.3:h:ibm:bladecenter:hs23e:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:h:ibm:flex_system_manager_node_7955:-:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:N/I:P/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.