{"api_version":"1","generated_at":"2026-07-23T04:58:27+00:00","cve":"CVE-2005-2984","urls":{"html":"https://cve.report/CVE-2005-2984","api":"https://cve.report/api/cve/CVE-2005-2984.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2005-2984","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2005-2984"},"summary":{"title":"CVE-2005-2984","description":"Avocent CCM console server running firmware 2.1 CCM4850 allows remote authenticated attackers to bypass port restrictions by connecting to the server via SSH and using the connect command to access the serial port.","state":"PUBLISHED","assigner":"mitre","published_at":"2005-09-20 00:03:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.6","severity":"","vector":"AV:L/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22302","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22302","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/14853","name":"http://www.securityfocus.com/bid/14853","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"Data Center Resources Avocent CCM Privileged Port Access Bypass Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://marc.info/?l=bugtraq&m=112680615103315&w=2","name":"http://marc.info/?l=bugtraq&m=112680615103315&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"'Avocent CCM: Port Access Control Bypass Vulnerability' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://drwetter.org/cs-probs/avocent-sshbug.txt","name":"http://drwetter.org/cs-probs/avocent-sshbug.txt","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"You're sure it's correct?","mime":"text/plain","httpstatus":"404","archivestatus":"200"},{"url":"http://secunia.com/advisories/16836/","name":"http://secunia.com/advisories/16836/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"Secunia - Advisories - Avocent CCM Port Access Control Bypass Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2005-2984","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2005-2984","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2005","cve_id":"2984","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"data_center_resources","cpe5":"avocent","cpe6":"ccm4850_2.1_firmware","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T22:53:29.962Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"http://drwetter.org/cs-probs/avocent-sshbug.txt"},{"name":"14853","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/14853"},{"name":"16836","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/16836/"},{"name":"avocent-connect-security-bypass(22302)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22302"},{"name":"20050915 Avocent CCM: Port Access Control Bypass Vulnerability","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=112680615103315&w=2"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2005-09-15T00:00:00.000Z","descriptions":[{"lang":"en","value":"Avocent CCM console server running firmware 2.1 CCM4850 allows remote authenticated attackers to bypass port restrictions by connecting to the server via SSH and using the connect command to access the serial port."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-10T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"tags":["x_refsource_MISC"],"url":"http://drwetter.org/cs-probs/avocent-sshbug.txt"},{"name":"14853","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/14853"},{"name":"16836","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/16836/"},{"name":"avocent-connect-security-bypass(22302)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22302"},{"name":"20050915 Avocent CCM: Port Access Control Bypass Vulnerability","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://marc.info/?l=bugtraq&m=112680615103315&w=2"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2005-2984","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Avocent CCM console server running firmware 2.1 CCM4850 allows remote authenticated attackers to bypass port restrictions by connecting to the server via SSH and using the connect command to access the serial port."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"http://drwetter.org/cs-probs/avocent-sshbug.txt","refsource":"MISC","url":"http://drwetter.org/cs-probs/avocent-sshbug.txt"},{"name":"14853","refsource":"BID","url":"http://www.securityfocus.com/bid/14853"},{"name":"16836","refsource":"SECUNIA","url":"http://secunia.com/advisories/16836/"},{"name":"avocent-connect-security-bypass(22302)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22302"},{"name":"20050915 Avocent CCM: Port Access Control Bypass Vulnerability","refsource":"BUGTRAQ","url":"http://marc.info/?l=bugtraq&m=112680615103315&w=2"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2005-2984","datePublished":"2005-09-19T04:00:00.000Z","dateReserved":"2005-09-19T00:00:00.000Z","dateUpdated":"2024-08-07T22:53:29.962Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-09-20 00:03:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:data_center_resources:avocent:ccm4850_2.1_firmware:*:*:*:*:*:*:*","matchCriteriaId":"8CE7177C-4C14-43EC-8C31-54733A5B7133"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2005","CveId":"2984","Ordinal":"1","Title":"CVE-2005-2984","CVE":"CVE-2005-2984","Year":"2005"},"notes":[{"CveYear":"2005","CveId":"2984","Ordinal":"1","NoteData":"Avocent CCM console server running firmware 2.1 CCM4850 allows remote authenticated attackers to bypass port restrictions by connecting to the server via SSH and using the connect command to access the serial port.","Type":"Description","Title":"CVE-2005-2984"},{"CveYear":"2005","CveId":"2984","Ordinal":"2","NoteData":"2005-09-19","Type":"Other","Title":"Published"},{"CveYear":"2005","CveId":"2984","Ordinal":"3","NoteData":"2017-07-10","Type":"Other","Title":"Modified"}]}}}