CVE-2019-6157

In various firmware versions of Lenovo System x, the integrated management module II (IMM2)'s first failure data capture (FFDC) includes the web server's private key in the generated log file for support.
References
Link Resource
https://support.lenovo.com/solutions/LEN-25667 Patch Vendor Advisory
Configurations

Configuration 1


Information

Published : 2019-04-22 04:29

Updated : 2019-10-09 11:51


NVD link : CVE-2019-6157

Mitre link : CVE-2019-6157

Products Affected
CWE
CWE-532

Insertion of Sensitive Information into Log File