CVE-2014-0960: IBM Pureapplication System

Medium severity, CVSS 6.6. EPSS: 0.6% chance of exploitation in the next 30 days.

IBM PureApplication System 1.0 before 1.0.0.4 cfix8 and 1.1 before 1.1.0.4 IF1 allows remote authenticated users to bypass intended access restrictions by establishing an SSH session from a deployed virtual machine.

Affected products

  • IBM Pureapplication System: version 1.0.0.0 only; version 1.0.0.1 only; version 1.0.0.2 only; version 1.0.0.3 only; version 1.0.0.4 only; version 1.1.0.0 only; …

Published 2014-06-14. Last modified 2026-06-17.