Unrated severityNVD Advisory· Published Jun 4, 2007· Updated Apr 23, 2026
CVE-2007-2387
CVE-2007-2387
Description
Apple Xserve Lights-Out Management before Firmware Update 1.0 on Intel hardware does not require a password for remote access to IPMI, which allows remote attackers to gain administrative access via unspecified requests with ipmitool.
Affected products
1- cpe:2.3:a:apple:xserve_lights-out_management:firmware_0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- docs.info.apple.com/article.htmlnvdPatch
- lists.apple.com/archives/security-announce/2007/May/msg00006.htmlnvdPatch
- secunia.com/advisories/25499nvdPatchVendor Advisory
- www.securityfocus.com/bid/24257nvdPatch
- osvdb.org/36128nvd
- www.apple.com/support/downloads/xservelightsoutmanagementfirmwareupdate10.htmlnvd
- www.securitytracker.com/idnvd
- www.vupen.com/english/advisories/2007/2014nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/34651nvd
News mentions
0No linked articles in our index yet.