CVE-2007-0661
Summary
| CVE | CVE-2007-0661 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2007-02-01 22:28:00 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | Intel Enterprise Southbridge 2 Baseboard Management Controller (BMC), Intel Server Boards 5000XAL, S5000PAL, S5000PSL, S5000XVN, S5000VCL, S5000VSA, SC5400RA, and OEM Firmware for Intel Enterprise Southbridge Baseboard Management Controller before 20070119, when Intelligent Platform Management Interface (IPMI) is enabled, allow remote attackers to connect and issue arbitrary IPMI commands, possibly triggering a denial of service. |
Risk And Classification
Primary CVSS: v2.0 5.4 from [email protected]
AV:A/AC:M/Au:N/C:P/I:P/A:P
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
AdjacentAccess Complexity
MediumAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:A/AC:M/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Intel | Enterprise Southbridge 2 Bmc | All | All | All | All |
| Hardware | Intel | Enterprise Southbridge Bmc | All | All | oem | All |
| Hardware | Intel | Server Board S5000pal | All | All | All | All |
| Hardware | Intel | Server Board S5000psl | All | All | All | All |
| Hardware | Intel | Server Board S5000vcl | All | All | All | All |
| Hardware | Intel | Server Board S5000vsa | All | All | All | All |
| Hardware | Intel | Server Board S5000xal | All | All | All | All |
| Hardware | Intel | Server Board S5000xvn | All | All | All | All |
| Hardware | Intel | Server Board Sc5400ra | All | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Intel Enterprise Southbridge 2 BMC Interface Commands Access - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Vendor Advisory |
| Intel Southbridge 2 Baseboard Management Controller Remote Denial of Service Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| lz1.intel.com/psirt/advisory.aspx | af854a3a-2127-422b-91ae-364da2661108 | lz1.intel.com | Patch, Vendor Advisory |
| osvdb.org/33044 | af854a3a-2127-422b-91ae-364da2661108 | osvdb.org | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.