CVE-2014-6134: IBM Installation Manager
Low severity, CVSS 1.2. EPSS: 0.3% chance of exploitation in the next 30 days.
IBM Rational ClearCase 8.0.0 before 8.0.0.14 and 8.0.1 before 8.0.1.7, when Installation Manager before 1.8.2 is used, retains cleartext server passwords in process memory throughout the installation procedure, which might allow local users to obtain sensitive information by leveraging access to the installation account.
Affected products
- IBM Installation Manager: up to and including 1.8.1.0
- IBM Rational Clearcase: version 8.0.0 only; version 8.0.0.1 only; version 8.0.0.2 only; version 8.0.0.3 only; version 8.0.0.4 only; version 8.0.0.5 only; …
Published 2015-03-25. Last modified 2026-06-17.