Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Flashsystem_v9000_firmware
(Ibm)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 3 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2020-08-17 | CVE-2020-4686 | IBM Spectrum Virtualize 8.3.1 could allow a remote user authenticated via LDAP to escalate their privileges and perform actions they should not have access to. IBM X-Force ID: 186678. | Flashsystem_v5000_firmware, Flashsystem_v7200_firmware, Flashsystem_v9000_firmware, Flashsystem_v9100_firmware, Flashsystem_v9200_firmware, San_volume_controller_firmware, Spectrum_virtualize, Storwize_v5000_firmware, Storwize_v5000e_firmware, Storwize_v5100_firmware, Storwize_v7000_firmware | 8.1 | ||
2017-11-13 | CVE-2017-1710 | A vulnerability in the Service Assistant GUI in IBM Storwize V7000 (2076) 8.1 could allow a remote attacker to perform a privilege escalation. IBM X-Force ID: 134531. | Flashsystem_v9000_firmware, San_volume_controller_firmware, Storwize_v5000_firmware, Storwize_v7000_firmware | 9.8 | ||
2016-03-12 | CVE-2015-7446 | Cross-site request forgery (CSRF) vulnerability in IBM Flash System V9000 7.4 before 7.4.1.4, 7.5 before 7.5.1.3, and 7.6 before 7.6.0.4 allows remote attackers to hijack the authentication of arbitrary users for requests that insert XSS sequences. | Flashsystem_v9000_firmware | 8.8 |