HIGH🇵🇱 Wersja polska

CVE-2025-36254

CVSS 7.4v3.1pub. 2026-08-19upd. 2026-08-24

IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0 could allow an attacker to bypass security authentication due to improperly encoding of DSCLI command output to obtain sensitive information or cause a denial of service.

CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H
  • IBM Ds8900f

    HW
    Ibm
    all versions
  • IBM Ds8900f Firmware

    OS
    Ibm
    89.40.83.0 – 89.44.25.0
  • IBM Ds8a00

    HW
    Ibm
    all versions
  • IBM Ds8a00 Firmware

    OS
    Ibm
    10.1.3.0 – 10.11.35.0
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
DoS
CWE
References

Related vulnerabilities

CVE-2025-36255HIGH7.5same product

IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0 could allo...

CVE-2025-36398MEDIUM5.4same product

IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0 could allo...

CVE-2025-36192MEDIUM6.7same product

IBM DS8A00 (R10.1) 10.10.106.0, IBM DS8A00 (R10.0) 10.1.3.010.2.45.0 i IBM DS8900F (R9.4) 89.40.83.089.42.18.0...

CVE-2024-22326MEDIUM5.0same product

IBM System Storage DS8900F 89.22.19.0, 89.30.68.0, 89.32.40.0, 89.33.48.0, 89.40.83.0, and 89.40.93.0 could al...

CVE-2023-46169MEDIUM6.5same product

IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0, and 89.33.48.0 could allow an authenticated u...