Home/Product/ibm spectrum virtualize
Product

ibm spectrum virtualize

17 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-25681
all versions
LDAP users on IBM Spectrum Virtualize 8.5 which are configured to require multifactor authentication can still authenticate to the
5.3MEDIUM
CVE-2023-27870
all versions
IBM Spectrum Virtualize 8.5, under certain circumstances, could disclose sensitive credential information while a download from Fi
5.9MEDIUM
CVE-2022-43873
all versions
An authenticated user can exploit a vulnerability in the IBM Spectrum Virtualize 8.2, 8.3, 8.4, and 8.5 GUI to execute code and es
6.3MEDIUM
CVE-2022-43870
all versions
IBM Spectrum Virtualize 8.3, 8.4, and 8.5 could disclose SNMPv3 server credentials to an authenticated user in log files. IBM X-F
6.5MEDIUM
CVE-2022-39167
all versions
IBM Spectrum Virtualize 8.5, 8.4, 8.3, 8.2, and 7.8, under certain configurations, could disclose sensitive information to an atta
5.9MEDIUM
CVE-2021-38969
all versions
IBM Spectrum Virtualize 8.2, 8.3, and 8.4 could allow an attacker to allow unauthorized access due to the reuse of support generat
9.8CRITICAL
CVE-2021-29873
>= 7.8.0.0 and < 8.4.0.0
IBM Flash System 900 could allow an authenticated attacker to obtain sensitive information and cause a denial of service due to a
8.1HIGH
CVE-2020-4686
all versions
IBM Spectrum Virtualize 8.3.1 could allow a remote user authenticated via LDAP to escalate their privileges and perform actions th
8.1HIGH
CVE-2018-1466
>= 6.1.0.0 and < 7.5.0.14
IBM SAN Volume Controller, IBM Storwize, IBM Spectrum Virtualize and IBM FlashSystem products (6.1, 6.2, 6.3, 6.4, 7.1, 7.2, 7.3,
5.3MEDIUM
CVE-2018-1465
>= 6.1.0.0 and < 7.5.0.14
IBM SAN Volume Controller, IBM Storwize, IBM Spectrum Virtualize and IBM FlashSystem products ( 6.1, 6.2, 6.3, 6.4, 7.1, 7.2, 7.3,
5.3MEDIUM
CVE-2018-1464
>= 6.1.0.0 and < 7.5.0.14
IBM SAN Volume Controller, IBM Storwize, IBM Spectrum Virtualize and IBM FlashSystem products ( 6.1, 6.2, 6.3, 6.4, 7.1, 7.2, 7.3,
6.5MEDIUM
CVE-2018-1463
>= 6.1.0.0 and < 7.5.0.14
IBM SAN Volume Controller, IBM Storwize, IBM Spectrum Virtualize and IBM FlashSystem products ( 6.1, 6.2, 6.3, 6.4, 7.1, 7.2, 7.3,
6.5MEDIUM
CVE-2018-1462
>= 6.1.0.0 and < 7.5.0.14
IBM SAN Volume Controller, IBM Storwize, IBM Spectrum Virtualize and IBM FlashSystem products ( 6.1, 6.2, 6.3, 6.4, 7.1, 7.2, 7.3,
7.6HIGH
CVE-2018-1461
>= 6.1.0.0 and < 7.5.0.14
IBM SAN Volume Controller, IBM Storwize, IBM Spectrum Virtualize and IBM FlashSystem products ( 6.1, 6.2, 6.3, 6.4, 7.1, 7.2, 7.3,
5.4MEDIUM
CVE-2018-1438
>= 6.1.0.0 and < 7.5.0.14
IBM SAN Volume Controller, IBM Storwize, IBM Spectrum Virtualize and IBM FlashSystem products ( 6.1, 6.2, 6.3, 6.4, 7.1, 7.2, 7.3,
7.5HIGH
CVE-2018-1434
>= 6.1.0.0 and < 7.5.0.14
IBM SAN Volume Controller, IBM Storwize, IBM Spectrum Virtualize and IBM FlashSystem products ( 6.1, 6.2, 6.3, 6.4, 7.1, 7.2, 7.3,
8.8HIGH
CVE-2018-1433
>= 6.1.0.0 and < 7.5.0.14
IBM SAN Volume Controller, IBM Storwize, IBM Spectrum Virtualize and IBM FlashSystem products ( 6.1, 6.2, 6.3, 6.4, 7.1, 7.2, 7.3,
7.5HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin