CVE-2010-1460

IBM Advanced Management Module < bpet50g - Denial of Service via Malformed TCP Application Data

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2010-1460. PoCs published by Alexey Sintsov.

AI-analyzed exploit summary This exploit demonstrates a DoS vulnerability in IBM BladeCenter Management Module by sending malformed TCP packets to port 3900, causing the device to reboot. The PoC uses Perl to send crafted packets with a specific payload to trigger the vulnerability.

Description

The IBM BladeCenter with Advanced Management Module (AMM) firmware before bpet50g does not properly perform interrupt sharing for USB and iSCSI, which allows remote attackers to cause a denial of service (management module reboot) via TCP packets with malformed application data.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Alexey Sintsov · textdoshardware
https://www.exploit-db.com/exploits/12252

This exploit demonstrates a DoS vulnerability in IBM BladeCenter Management Module by sending malformed TCP packets to port 3900, causing the device to reboot. The PoC uses Perl to send crafted packets with a specific payload to trigger the vulnerability.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: IBM BladeCenter Management Module (versions before BPET50G)
No auth needed
Prerequisites: Network access to the target device on port 3900/tcp
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (4)

Core 4
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/39499
Various Sources x_refsource_misc
http://dsecrg.com/pages/vul/show.php?id=149
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/510744/100/0/threaded

Scores

EPSS 0.0277
EPSS Percentile 84.4%

Details

CWE
CWE-399
Status published
Products (13)
ibm/advanced_management_module 1.00
ibm/advanced_management_module 1.01
ibm/advanced_management_module 1.20 (2 CPE variants)
ibm/advanced_management_module 1.25 (3 CPE variants)
ibm/advanced_management_module 1.26 b (5 CPE variants)
ibm/advanced_management_module 1.28 g
ibm/advanced_management_module 1.32 d
ibm/advanced_management_module 1.34 b (2 CPE variants)
ibm/advanced_management_module 1.36 d (4 CPE variants)
ibm/advanced_management_module 1.42 d (6 CPE variants)
... and 3 more
Published Apr 16, 2010
Tracked Since Feb 18, 2026