VendorsIBMpower_hardware_management_consoleall versions
Vulnerabilities

IBM Power Hardware Management Console (HMC)

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2017-1134
IBM Reliable Scalable Cluster Technology could allow a local user to escalate their privileges to gain root access. IBM Reference #: 1998459.
Published 2017-03-20 · Modified
7.8EPSS 0.003
CVE-2024-56477
IBM Power Hardware Management Console directory traversal
Published 2025-02-14 · Analyzed
6.5EPSS 0.005
CVE-2014-0883
IBM Power Hardware Management Console cross-site scripting
Published 2018-04-20 · Modified
6.1EPSS 0.007
CVE-2016-5011
The parse_dos_extended function in partitions/dos.c in the libblkid library in util-linux allows physically proximate attackers to cause a denial of service (memory consumption) via a crafted MSDOS partition table with an extended partition boot record at zero offset.
Published 2017-04-11 · Modified
4.9EPSS 0.005
CVE-2012-3296
Cross-site scripting (XSS) vulnerability in the Help link in the login panel in IBM Power Hardware Management Console (HMC) 7R7.1.0 before SP4, 7R7.2.0 before SP2, and 7R7.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Published 2012-08-17 · Modified
4.3EPSS 0.016