Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2882▼ 181 respecto a la semana anterior
Críticas / altas1279▼ 60 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)487▼ 22 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.1) | 0.64% | — | Lenovo Integrated Management Module 2 | 15/9/2020 | 17/6/2026 | A cross-site scripting (XSS) vulnerability was discovered in the legacy IBM and Lenovo System x IMM2 (Integrated Management Module 2), prior to version 5.60, embedded Baseboard Management Controller (BMC) web interface during an internal security review. This vulnerability could allow JavaScript code to be executed in… | |
| Modificada | Media (6.5) | 1.2% | — | IBM Integrated Management Module Firmware | 25/4/2018 | 17/6/2026 | Integrated Management Module II (IMM2) on IBM Flex System, NeXtScale, System x3xxx, and System x iDataPlex systems might allow remote authenticated users to obtain sensitive account information via vectors related to generated Service Advisor data (FFDC). IBM X-Force ID: 91149. | |
| Modificada | Alta (7.4) | 2.0% | — | IBM Integrated Management Module Firmware | 25/4/2018 | 17/6/2026 | The TPM on Integrated Management Module II (IMM2) on IBM Flex System x222 servers with firmware 1.00 through 3.56 allows remote attackers to obtain sensitive key information or cause a denial of service by leveraging an incorrect configuration. IBM X-Force ID: 91146. | |
| Modificada | Crítica (9.8) | 1.3% | — | Lenovo Integrated Management Module 2 | 19/4/2018 | 17/6/2026 | A stack overflow vulnerability was discovered within the web administration service in Integrated Management Module 2 (IMM2) earlier than version 4.70 used in some Lenovo servers and earlier than version 6.60 used in some IBM servers. An attacker providing a crafted user ID and password combination can cause a portion… | |
| Modificada | Media (6.5) | 0.84% | — | Lenovo Integrated Management Module FirmwareIBM Integrated Management Module Firmware | 20/6/2017 | 17/6/2026 | In the IMM2 firmware of Lenovo System x servers, remote commands issued by LXCA or other utilities may be captured in the First Failure Data Capture (FFDC) service log if the service log is generated when that remote command is running. Captured command data may contain clear text login information. Authorized users… | |
| Modificada | Media (5) | 0.98% | — | IBM Integrated Management Module FirmwareIBM Integrated Management ModuleIBM Advanced Management Module FirmwareIBM Advanced Management Module+2 | 7/7/2014 | 17/6/2026 | The firmware before 3.66E in IBM BladeCenter Advanced Management Module (AMM), the firmware before 1.43 in IBM Integrated Management Module (IMM), and the firmware before 4.15 in IBM Integrated Management Module II (IMM2) contains cleartext IPMI credentials, which allows attackers to execute arbitrary IPMI commands,… | |
| Modificada | Media (4.3) | 0.95% | — | IBM Integrated Management Module 2IBM BladecenterIBM Flex System Manager Node 7955IBM Flex System Manager Node 8731+27 | 21/1/2014 | 16/6/2026 | Integrated Management Module (IMM) 2 1.00 through 2.00 on IBM System X and Flex System servers supports SSL cipher suites with short keys, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via a brute-force attack against (1) SSL or (2) TLS traffic. | |
| Modificada | Baja (1.9) | 0.35% | — | IBM Flex System Chassis Management ModuleIBM Integrated Management Module II | 8/12/2012 | 16/6/2026 | IBM Flex System Chassis Management Module (CMM) and Integrated Management Module 2 (IMM2) allow local users to obtain sensitive information about (1) local accounts, (2) SSH private keys, (3) SSL/TLS private keys, (4) SNMPv3 communities, and (5) LDAP credentials by leveraging unspecified side effects of service or… |