As cited
Copy frozen at (site build).
vulnerabilities
Over 24,000 exposed server BMCs leak password hash via decades-old flaw
Over 24,000 internet-exposed servers leak authentication password hashes through a decades-old vulnerability in their Baseboard Management Controller (BMC) interface. The flaw has persisted for approximately 20 years without remediation. Attackers can exploit this weakness to obtain credentials for out-of-band management access to affected hardware.
Why it matters: Server administrators managing environments with exposed BMCs face immediate risk of credential compromise and unauthorized access to critical infrastructure management interfaces, requiring urgent network segmentation and access controls.
- Source published
- First seen by Cybersecurity Tracker