CVE-2017-1710: Critical severity ibm storwize unified v7000 vulnerability
Published Nov 13, 2017
·Updated
A vulnerability in the Service Assistant GUI in IBM Storwize V7000 (2076) 8.1 could allow a remote attacker to perform a privilege escalation. IBM X-Force ID: 134531.
Affected Software
8 affected components
IBM Storwize V7000 Firmware=8.1
IBM Storwize V7000
IBM Storwize V5000 Firmware=8.1
IBM Storwize V5000
IBM Flashsystem V9000 Firmware=8.1
IBM Flashsystem V9000
IBM San Volume Controller Firmware=8.1
IBM SAN Volume Controller
Event History
Nov 13, 2017
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the CVE ID of this vulnerability?
The CVE ID of this vulnerability is CVE-2017-1710.
2
What is the severity rating of CVE-2017-1710?
The severity rating of CVE-2017-1710 is 9.8 (Critical).
3
Which IBM products are affected by CVE-2017-1710?
IBM Storwize V7000 (2076) 8.1, IBM Storwize V5000 Firmware 8.1, IBM Flashsystem V9000 Firmware 8.1, and IBM SAN Volume Controller Firmware 8.1 are affected by CVE-2017-1710.
4
What does the vulnerability in CVE-2017-1710 allow?
The vulnerability in CVE-2017-1710 allows a remote attacker to perform a privilege escalation.
5
Are IBM Storwize V7000 and IBM Storwize V5000 vulnerable to CVE-2017-1710?
No, IBM Storwize V7000 and IBM Storwize V5000 are not vulnerable to CVE-2017-1710.