CVE-2014-0872: IBM Security Key Lifecycle Manager

Medium severity, CVSS 4.1. EPSS: 0.3% chance of exploitation in the next 30 days.

The installation process in IBM Security Key Lifecycle Manager 2.5 stores unencrypted credentials, which might allow local users to obtain sensitive information by leveraging root access. IBM X-Force ID: 90988.

Affected products

  • IBM Security Key Lifecycle Manager: version 2.5.0 only

Published 2018-04-25. Last modified 2026-06-17.