CVE-2014-0882: IBM Integrated Management Module Firmware

Medium severity, CVSS 6.5. EPSS: 1.2% chance of exploitation in the next 30 days.

Integrated Management Module II (IMM2) on IBM Flex System, NeXtScale, System x3xxx, and System x iDataPlex systems might allow remote authenticated users to obtain sensitive account information via vectors related to generated Service Advisor data (FFDC). IBM X-Force ID: 91149.

Affected products

  • IBM Integrated Management Module Firmware: version 3.50 only; version 3.55 only; version 3.56 only; version 3.65 only; version 3.67 only

Published 2018-04-25. Last modified 2026-06-17.