Vulnerabilities > IBM > Hardware Management Console

DATE CVE VULNERABILITY TITLE RISK
2023-10-16 CVE-2023-38280 Improper Privilege Management vulnerability in IBM Hardware Management Console 10.1.1010.0/10.2.1030.0
IBM HMC (Hardware Management Console) 10.1.1010.0 and 10.2.1030.0 could allow a local user to escalate their privileges to root access on a restricted shell.
local
low complexity
ibm CWE-269
7.8
2021-07-19 CVE-2021-29707 Unspecified vulnerability in IBM Hardware Management Console 9.1.910.0/9.2.950.0
IBM HMC (Hardware Management Console) V9.1.910.0 and V9.2.950.0 could allow a local user to escalate their privileges to root access on a restricted shell.
local
low complexity
ibm
7.2
2016-07-07 CVE-2016-0230 Permissions, Privileges, and Access Controls vulnerability in IBM Hardware Management Console
IBM Power Hardware Management Console (HMC) 7.3 through 7.3.0 SP7, 7.9 through 7.9.0 SP3, 8.1 through 8.1.0 SP3, 8.2 through 8.2.0 SP2, 8.3 through 8.3.0 SP2, 8.4 through 8.4.0 SP1, and 8.5.0 allows physically proximate attackers to obtain root access via unspecified vectors.
local
low complexity
ibm CWE-264
7.2
2009-05-28 CVE-2009-1806 Unspecified vulnerability in IBM Hardware Management Console 7.3.4.0
Unspecified vulnerability in IBM Hardware Management Console (HMC) 7 release 3.4.0 SP2, when Active Memory Sharing is used, has unknown impact and attack vectors, related to a shared memory partition and a shared memory pool with redundant paging Virtual I/O Server (VIOS) partitions.
network
ibm
critical
9.3
2009-01-20 CVE-2009-0178 Unspecified vulnerability in IBM Hardware Management Console 7.3.2.0
Unspecified vulnerability in IBM Hardware Management Console (HMC) 7 release 3.2.0 SP1 has unknown impact and attack vectors.
network
low complexity
ibm
critical
10.0
2008-11-10 CVE-2008-5035 Resource Management Errors vulnerability in IBM Hardware Management Console 3.2.0/3.3.0
The Resource Monitoring and Control (RMC) daemon in IBM Hardware Management Console (HMC) 7 release 3.2.0 SP1 and 3.3.0 SP2 allows remote attackers to cause a denial of service (daemon crash or hang) via a packet with an invalid length.
network
low complexity
ibm CWE-399
5.0
2008-01-30 CVE-2008-0495 Denial Of Service vulnerability in IBM Hardware Management Console 7.3.2.0
Unspecified vulnerability in the Pegasus CIM Server in IBM Hardware Management Console (HMC) 7 R3.2.0 allows remote attackers to cause a denial of service via unspecified vectors.
network
low complexity
ibm
7.8
2007-12-10 CVE-2007-6305 Buffer Errors vulnerability in IBM Hardware Management Console 7.3.2.0
Multiple unspecified vulnerabilities in IBM Hardware Management Console (HMC) 7 R3.2.0 allow attackers to gain privileges via "some HMC commands."
local
low complexity
linux unix ibm CWE-119
4.6
2007-12-10 CVE-2007-6294 Permissions, Privileges, and Access Controls vulnerability in IBM Hardware Management Console 3.3.7
Multiple unspecified vulnerabilities in IBM Hardware Management Console (HMC) 3 R3.7 allow attackers to gain privileges via "some HMC commands."
local
low complexity
ibm CWE-264
4.9
2007-12-10 CVE-2007-6293 Unspecified vulnerability in IBM Hardware Management Console 6.1.3
Multiple unspecified vulnerabilities in IBM Hardware Management Console (HMC) 6 R1.3 allow attackers to gain privileges via "some HMC commands."
network
low complexity
ibm
critical
10.0