3.5
CVE-2014-0897
- EPSS 0.59%
- Veröffentlicht 29.08.2014 09:55:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
The Configuration Patterns component in IBM Flex System Manager (FSM) 1.2.0.x, 1.2.1.x, 1.3.0.x, and 1.3.1.x uses a weak algorithm in an encryption step during Chassis Management Module (CMM) account creation, which makes it easier for remote authenticated users to defeat cryptographic protection mechanisms via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Flex System Manager Version 1.2.0
Ibm ≫ Flex System Manager Version 1.2.1
Ibm ≫ Flex System Manager Version 1.3.0
Ibm ≫ Flex System Manager Version 1.3.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.59% | 0.436 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 3.5 | 6.8 | 2.9 |
AV:N/AC:M/Au:S/C:N/I:P/A:N
|
http://www-01.ibm.com/support/docview.wss?uid=swg1IT03824
http://www.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096153
https://exchange.xforce.ibmcloud.com/vulnerabilities/91395