IBM Spectrum Virtualize 8.5.0.0

CPE Details

IBM Spectrum Virtualize 8.5.0.0
8.5.0.0
2023-01-25
14h10 +00:00
2023-02-28
20h49 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:ibm:spectrum_virtualize:8.5.0.0:*:*:*:*:*:*:*

Informations

Vendor

ibm

Product

spectrum_virtualize

Version

8.5.0.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-25681 2024-03-05 19h42 +00:00 LDAP users on IBM Spectrum Virtualize 8.5 which are configured to require multifactor authentication can still authenticate to the CIM interface using only username and password. This does not affect local users with MFA configured or remote users authenticating via single sign-on. IBM X-Force ID: 247033.
6.5
Medium
CVE-2022-43873 2023-02-22 17h32 +00:00 An authenticated user can exploit a vulnerability in the IBM Spectrum Virtualize 8.2, 8.3, 8.4, and 8.5 GUI to execute code and escalate their privilege on the system. IBM X-Force ID: 239847.
8.8
High
CVE-2022-43870 2023-02-22 17h26 +00:00 IBM Spectrum Virtualize 8.3, 8.4, and 8.5 could disclose SNMPv3 server credentials to an authenticated user in log files. IBM X-Force ID: 239540.
6.5
Medium
CVE-2022-39167 2023-01-19 16h44 +00:00 IBM Spectrum Virtualize 8.5, 8.4, 8.3, 8.2, and 7.8, under certain configurations, could disclose sensitive information to an attacker using man-in-the-middle techniques. IBM X-Force ID: 235408.
5.9
Medium