A command injection vulnerability was reported in the Integrated Management Module (IMM) of legacy IBM System x 3550 M3 and IBM System x 3650 M3 servers that could allow the execution of operating system commands over an authenticated SSH or Telnet session.
2021-11-12T22:15:08.057
2024-11-21T06:22:15.303
Modified
CVSSv3.1: 7.2 (HIGH)
AV:N/AC:L/Au:S/C:C/I:C/A:C
8.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | ibm | system_x3550_m3_firmware | * | Yes |
Hardware | ibm | system_x3550_m3 | - | No |
Operating System | ibm | system_x3650_m3_firmware | * | Yes |
Hardware | ibm | system_x3650_m3 | - | No |