CVE Vulnerabilities

CVE-2015-1950

Published: Jul 01, 2015 | Modified: Nov 30, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

IBM PowerVC Standard Edition 1.2.2.1 through 1.2.2.2 does not require authentication for access to the Python interpreter with nova credentials, which allows KVM guest OS users to discover certain PowerVC credentials and bypass intended access restrictions via unspecified Python code.

Affected Software

Name Vendor Start Version End Version
Powervc Ibm 1.2.2.1 (including) 1.2.2.1 (including)
Powervc Ibm 1.2.2.2 (including) 1.2.2.2 (including)

References