CVE-2014-4750: IBM Powervc
Low severity, CVSS 2.9. EPSS: 0.6% chance of exploitation in the next 30 days.
IBM PowerVC Express Edition 1.2.0 before FixPack3 establishes an FTP session for transferring files to a managed IVM, which allows remote attackers to discover credentials by sniffing the network.
Affected products
- IBM Powervc: version 1.2.0.0 only; version 1.2.0.1 only; version 1.2.0.2 only
Published 2014-08-20. Last modified 2026-06-17.