CVE Vulnerabilities

CVE-2014-0897

Published: Aug 29, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.5 LOW
AV:N/AC:M/Au:S/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The Configuration Patterns component in IBM Flex System Manager (FSM) 1.2.0.x, 1.2.1.x, 1.3.0.x, and 1.3.1.x uses a weak algorithm in an encryption step during Chassis Management Module (CMM) account creation, which makes it easier for remote authenticated users to defeat cryptographic protection mechanisms via unspecified vectors.

Affected Software

NameVendorStart VersionEnd Version
Flex_system_managerIbm1.2.0 (including)1.2.0 (including)
Flex_system_managerIbm1.2.1 (including)1.2.1 (including)
Flex_system_managerIbm1.3.0 (including)1.3.0 (including)
Flex_system_managerIbm1.3.1 (including)1.3.1 (including)

References