Unrated severityNVD Advisory· Published Apr 13, 2009· Updated Apr 23, 2026
CVE-2009-1289
CVE-2009-1289
Description
private/login.ssi in the Advanced Management Module (AMM) on the IBM BladeCenter, including the BladeCenter H with BPET36H 54, allows remote attackers to discover the access roles and scopes of arbitrary user accounts via a modified WEBINDEX parameter.
Affected products
30- cpe:2.3:a:ibm:advanced_management_module:1.36h:*:*:*:*:*:*:*
cpe:2.3:h:ibm:bladecenter:e:*:1881:*:*:*:*:*+ 28 more
- cpe:2.3:h:ibm:bladecenter:e:*:1881:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:e:*:7967:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:e:*:8677:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:h:*:7989:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:h:*:8852:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:hc10:*:7996:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:hs12:*:1916:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:hs12:*:8014:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:hs12:*:8028:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:hs20:*:1883:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:hs21:*:1885:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:hs21:*:8853:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:hs21_xm:*:1915:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:hs21_xm:*:7995:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:ht:*:8740:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:ht:*:8750:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:js12:*:7998:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:js21:*:7988:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:js21:*:8844:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:js22:*:7998:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:ls20:*:8850:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:ls21:*:7971:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:ls41:*:7972:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:qs21:*:0792:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:qs22:*:0793:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:s:*:1948:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:s:*:8886:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:t:*:8720:*:*:*:*:*
- cpe:2.3:h:ibm:bladecenter:t:*:8730:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5News mentions
0No linked articles in our index yet.