CVE-2014-0897: IBM Flex System Manager

Low severity, CVSS 3.5. EPSS: 0.6% chance of exploitation in the next 30 days.

The Configuration Patterns component in IBM Flex System Manager (FSM) 1.2.0.x, 1.2.1.x, 1.3.0.x, and 1.3.1.x uses a weak algorithm in an encryption step during Chassis Management Module (CMM) account creation, which makes it easier for remote authenticated users to defeat cryptographic protection mechanisms via unspecified vectors.

Affected products

  • IBM Flex System Manager: version 1.2.0 only; version 1.2.1 only; version 1.3.0 only; version 1.3.1 only

Published 2014-08-29. Last modified 2026-06-17.