CVE-2014-0897

The Configuration Patterns component in IBM Flex System Manager (FSM) 1.2.0.x, 1.2.1.x, 1.3.0.x, and 1.3.1.x uses a weak algorithm in an encryption step during Chassis Management Module (CMM) account creation, which makes it easier for remote authenticated users to defeat cryptographic protection mechanisms via unspecified vectors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:flex_system_manager:1.2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:flex_system_manager:1.2.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:flex_system_manager:1.3.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:flex_system_manager:1.3.1:*:*:*:*:*:*:*

History

21 Nov 2024, 02:03

Type Values Removed Values Added
References () http://www-01.ibm.com/support/docview.wss?uid=swg1IT03824 - () http://www-01.ibm.com/support/docview.wss?uid=swg1IT03824 -
References () http://www.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096153 - Vendor Advisory () http://www.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096153 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/91395 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/91395 -

Information

Published : 2014-08-29 09:55

Updated : 2024-11-21 02:03


NVD link : CVE-2014-0897

Mitre link : CVE-2014-0897

CVE.ORG link : CVE-2014-0897


JSON object : View

Products Affected

ibm

  • flex_system_manager
CWE
CWE-310

Cryptographic Issues