CVE-2015-0137
24.03.2015, 00:59
IBM PowerVC Standard 1.2.0.x before 1.2.0.4 and 1.2.1.x before 1.2.2 validates Hardware Management Console (HMC) certificates only during the pre-login stage, which allows man-in-the-middle attackers to spoof devices via a crafted certificate.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | powervc | 1.2.0.0 |
ibm | powervc | 1.2.0.1 |
ibm | powervc | 1.2.0.2 |
ibm | powervc | 1.2.0.3 |
ibm | powervc | 1.2.1.0 |
ibm | powervc | 1.2.1.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration