20-Year-Old IPMI 2.0 Flaw Exposes 24,000 Servers Worldwide
- 事件类型
- Vulnerability
- 报告时间
- 2026-07-31 01:10:45
- 被攻击国家/地区
- Russia
- 被攻击行业
- []
- 被攻击组织
- []
- 被攻击域名
- []
- 攻击组织
- None
- 信息来源
- telegram
Original Text
查看原文
原文内容
A 20-year-old flaw in the IPMI 2.0 protocol has exposed around 24,000 servers worldwide to potential attacks. The vulnerability allows attackers to obtain BMC password hashes and perform offline cracking, potentially gaining full control over physical servers. Because BMC operates independently from the operating system, traditional security tools may not detect compromises. Organizations should restrict BMC access, update firmware, and use strong authentication controls to reduce risk.