CVE Vulnerabilities

CVE-2014-0897

Published: Aug 29, 2014 | Modified: Aug 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.5 LOW
AV:N/AC:M/Au:S/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The Configuration Patterns component in IBM Flex System Manager (FSM) 1.2.0.x, 1.2.1.x, 1.3.0.x, and 1.3.1.x uses a weak algorithm in an encryption step during Chassis Management Module (CMM) account creation, which makes it easier for remote authenticated users to defeat cryptographic protection mechanisms via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Flex_system_manager Ibm 1.2.0 (including) 1.2.0 (including)
Flex_system_manager Ibm 1.2.1 (including) 1.2.1 (including)
Flex_system_manager Ibm 1.3.0 (including) 1.3.0 (including)
Flex_system_manager Ibm 1.3.1 (including) 1.3.1 (including)

References