PT-2013-5535 · Ibm · Ibm Flex System Manager

Published

2013-10-25

·

Updated

2017-08-29

·

CVE-2013-5424

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions IBM Flex System Manager (FSM) version 1.3.0
Description The issue allows remote attackers to bypass intended access restrictions. This can lead to the creation of new user accounts or the execution of tasks by leveraging an expired password for the system-level account.
Recommendations For IBM Flex System Manager (FSM) version 1.3.0, update the system to prevent the exploitation of expired passwords for the system-level account. As a temporary workaround, consider restricting access to system-level accounts and regularly reviewing user account creations and task executions to minimize the risk of unauthorized activities.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-5424

Affected Products

Ibm Flex System Manager