First published: Fri Apr 08 2022(Updated: )
IBM System Storage DS8000 Management Console (HMC) could allow a remote attacker to obtain sensitive information through unpublished URLs.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM R9.1 | <=89.1x.0.0 | |
IBM R9.2 | <=89.2x.0.0 | |
IBM R8.5 | <=88.5x.x.x | |
Ibm System Storage Ds8000 Management Console Firmware | =88.50.0.0 | |
Ibm System Storage Ds8000 Management Console Firmware | =89.10.0.0 | |
Ibm System Storage Ds8000 Management Console Firmware | =89.20.0.0 | |
IBM System Storage DS8000 Management Console |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue is CVE-2021-38930.
The severity of CVE-2021-38930 is high with a severity value of 7.5.
IBM System Storage DS8000 Management Console versions R8.5 88.5x.x.x, R9.1 89.1x.0.0, and R9.2 89.2x.0.0 are affected by CVE-2021-38930.
A remote attacker can exploit CVE-2021-38930 to obtain sensitive information through unpublished URLs.
Yes, you can find more information about CVE-2021-38930 at the following references: [IBM X-Force ID: 210331](https://exchange.xforce.ibmcloud.com/vulnerabilities/210331) and [IBM Support](https://www.ibm.com/support/pages/node/6570741).