CVE-2015-0136
Published Mar 24, 2015
Last updated 10 years ago
Overview
- Description
- powervc-iso-import in IBM PowerVC 1.2.0.x before 1.2.0.4 and 1.2.1.x before 1.2.2 places an access token on the command line during IVM and PowerKVM management, which allows local users to obtain sensitive information by listing the process.
- Source
- psirt@us.ibm.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 2.1
- Impact score
- 2.9
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-200
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:powervc:1.2.0.0:*:*:*:express:*:*:*", "vulnerable": true, "matchCriteriaId": "F235BE09-8C8A-47DB-8FEB-1DB75B033143" }, { "criteria": "cpe:2.3:a:ibm:powervc:1.2.0.0:*:*:*:standard:*:*:*", "vulnerable": true, "matchCriteriaId": "588EBB92-23C4-425B-9093-F776323B05F3" }, { "criteria": "cpe:2.3:a:ibm:powervc:1.2.0.1:*:*:*:express:*:*:*", "vulnerable": true, "matchCriteriaId": "603F587A-2B4B-4FCD-B0AD-EE07553CB485" }, { "criteria": "cpe:2.3:a:ibm:powervc:1.2.0.1:*:*:*:standard:*:*:*", "vulnerable": true, "matchCriteriaId": "AB78B5FF-E4F3-483D-A3BF-F2E2ED997DEF" }, { "criteria": "cpe:2.3:a:ibm:powervc:1.2.0.2:*:*:*:express:*:*:*", "vulnerable": true, "matchCriteriaId": "68534B6C-B5EC-4F62-AF41-DDCE3C10ACBD" }, { "criteria": "cpe:2.3:a:ibm:powervc:1.2.0.2:*:*:*:standard:*:*:*", "vulnerable": true, "matchCriteriaId": "C1626D53-458F-4EE2-9CA5-EFF2B819B5CB" }, { "criteria": "cpe:2.3:a:ibm:powervc:1.2.0.3:*:*:*:express:*:*:*", "vulnerable": true, "matchCriteriaId": "C9C4784D-B903-461C-9B50-0BD8BBE1FF41" }, { "criteria": "cpe:2.3:a:ibm:powervc:1.2.0.3:*:*:*:standard:*:*:*", "vulnerable": true, "matchCriteriaId": "12201638-3C87-480B-A5A1-371A1FB37056" }, { "criteria": "cpe:2.3:a:ibm:powervc:1.2.1.0:-:-:-:express:*:*:*", "vulnerable": true, "matchCriteriaId": "BAAFA0F7-0187-437B-846B-A267BE7751A0" }, { "criteria": "cpe:2.3:a:ibm:powervc:1.2.1.0:-:-:-:standard:*:*:*", "vulnerable": true, "matchCriteriaId": "6F9A7FC3-8028-4B81-A0A3-E52C21986FDD" }, { "criteria": "cpe:2.3:a:ibm:powervc:1.2.1.1:-:-:-:express:*:*:*", "vulnerable": true, "matchCriteriaId": "3D451202-57AC-4D09-BE16-043AF4206C3E" }, { "criteria": "cpe:2.3:a:ibm:powervc:1.2.1.1:-:-:-:standard:*:*:*", "vulnerable": true, "matchCriteriaId": "E23B23F7-C755-435E-AA2B-05F2B3966816" } ], "operator": "OR" } ] } ]