Security Advisory

CVE-2014-4749

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2014-08-20 10:00:00
Last updated 2024-08-06 11:27:36
Assigner ibm
CVSS score not scored
State PUBLISHED

Description

IBM PowerVC 1.2.0 before FixPack3 does not properly use the known_hosts file, which allows man-in-the-middle attackers to spoof SSH servers via an arbitrary server key.