CVE-2025-15679: BMC root account active without password on BullSequana XH3406 and XH3515
Under certain circumstances such as reset to factory default operation, the BMC root account is made active without a password on BullSequana XH3406 and XH3515.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
For BullSequana XH3406 and XH3515, restrict network access to the BMC interface so only trusted management hosts can reach it, since the BMC root account may be active without a password after certain operations (e.g., reset to factory defaults).
Event History
Frequently Asked Questions
When is the BMC root account exposed without a password?
The issue can occur under certain circumstances, including after a reset to factory default operation, when the BMC root account is made active without a password.
What should be checked after resetting a BMC to factory defaults?
Verify whether the BMC root account is active and whether a password is configured. If it is active without a password, set a password immediately.