CVE-2014-0897: IBM Flex System Manager
Low severity, CVSS 3.5. EPSS: 0.6% chance of exploitation in the next 30 days.
The Configuration Patterns component in IBM Flex System Manager (FSM) 1.2.0.x, 1.2.1.x, 1.3.0.x, and 1.3.1.x uses a weak algorithm in an encryption step during Chassis Management Module (CMM) account creation, which makes it easier for remote authenticated users to defeat cryptographic protection mechanisms via unspecified vectors.
Affected products
- IBM Flex System Manager: version 1.2.0 only; version 1.2.1 only; version 1.3.0 only; version 1.3.1 only
Published 2014-08-29. Last modified 2026-06-17.