CVE-2012-4838: IBM Flex System Chassis Management Module

Low severity, CVSS 1.9. EPSS: 0.4% chance of exploitation in the next 30 days.

IBM Flex System Chassis Management Module (CMM) and Integrated Management Module 2 (IMM2) allow local users to obtain sensitive information about (1) local accounts, (2) SSH private keys, (3) SSL/TLS private keys, (4) SNMPv3 communities, and (5) LDAP credentials by leveraging unspecified side effects of service or maintenance activity.

Affected products

  • IBM Flex System Chassis Management Module: affected versions not specified
  • IBM Integrated Management Module Ii: affected versions not specified

Published 2012-12-08. Last modified 2026-06-16.