IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 stores NIM private keys used in NIM environments in an insecure way which is susceptible to unauthorized access by an attacker using man in the middle techniques.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7251173 |
|
History
Wed, 19 Nov 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:ibm:vios:3.1.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:vios:4.1.0:*:*:*:*:*:*:* |
Fri, 14 Nov 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 13 Nov 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 stores NIM private keys used in NIM environments in an insecure way which is susceptible to unauthorized access by an attacker using man in the middle techniques. | |
| Title | AIX Insufficiently Protected Credentials | |
| First Time appeared |
Ibm
Ibm aix Ibm vios |
|
| Weaknesses | CWE-522 | |
| CPEs | cpe:2.3:a:ibm:vios:3.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:vios:4.1:*:*:*:*:*:*:* cpe:2.3:o:ibm:aix:7.2:*:*:*:*:*:*:* cpe:2.3:o:ibm:aix:7.3:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm aix Ibm vios |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published: 2025-11-13T22:01:22.072Z
Updated: 2025-11-15T04:56:15.962Z
Reserved: 2025-04-15T21:16:14.711Z
Link: CVE-2025-36096
Updated: 2025-11-14T15:33:06.979Z
Status : Analyzed
Published: 2025-11-13T22:15:50.500
Modified: 2025-11-19T22:11:50.723
Link: CVE-2025-36096
No data.