Vulnerabilities > IBM > Integrated Management Module Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-04-25 CVE-2014-0882 Information Exposure vulnerability in IBM Integrated Management Module Firmware
Integrated Management Module II (IMM2) on IBM Flex System, NeXtScale, System x3xxx, and System x iDataPlex systems might allow remote authenticated users to obtain sensitive account information via vectors related to generated Service Advisor data (FFDC).
network
low complexity
ibm CWE-200
6.5
2017-06-20 CVE-2017-3744 Information Exposure Through Log Files vulnerability in multiple products
In the IMM2 firmware of Lenovo System x servers, remote commands issued by LXCA or other utilities may be captured in the First Failure Data Capture (FFDC) service log if the service log is generated when that remote command is running.
network
low complexity
lenovo ibm CWE-532
6.5