IBM Storage Scale是美国国际商业机器(IBM)公司的一个存储解决方案,旨在帮助企业有效地管理和扩展存储资源,满足不断增长的数据存储需求。 IBM Storage Scale 5.2.3.0版本至5.2.3.5及之前版本和6.0.0.0版本至6.0.0.1及之前版本存在安全漏洞,该漏洞源于本地用户可能无意中触发额外的资源权限,导致资源被非预期执行者执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Storage Scale | IBM S ~ rage Scale 5.2.3.0 - 5.2.3.5 |
cpe:2.3:a:ibm:storage_scale:ibm:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-1567 | 7.1 HIGH | IBM InfoSphere Information Server is affected by an XML external entity injection (XXE) vu |
| CVE-2025-13616 | 6.5 MEDIUM | DataStage on Cloud Pak for Data is vulnerable to sensitive information leak due to HTTP re |
| CVE-2026-2606 | 6.5 MEDIUM | IBM webMethods API Management fails to validate user input and enables unauthorized arbitr |
| CVE-2025-13686 | 6.3 MEDIUM | DataStage on Cloud Pak for Data is vulnerable to arbitrary code injection due to runtime e |
| CVE-2025-13687 | 6.3 MEDIUM | DataStage on Cloud Pak for Data is vulnerable to arbitrary code injection due to runtime e |
| CVE-2025-13688 | 6.3 MEDIUM | DataStage on Cloud Pak for Data is vulnerable to arbitrary code injection due to runtime e |
| CVE-2025-36364 | 6.2 MEDIUM | IBM DevOps Plan REST APIs are vulnerable to exposure of sensitive data through request que |
| CVE-2025-13490 | 5.9 MEDIUM | IBM App Connect Enterprise Certified Container IntegrationServer and IntegrationRuntime op |
| CVE-2025-36363 | 5.9 MEDIUM | IBM DevOps Plan is vulnerable to Excessive Authentication Attempts |
| CVE-2025-13734 | 5.4 MEDIUM | IBM Engineering Requirements Management DOORS Next could allow an authenticated user to ac |
| CVE-2025-14480 | 5.1 MEDIUM | IBM Aspera faspio Gateway 1.3.7 has addressed a vulnerability affected by weak cryptograph |
| CVE-2025-14923 | 4.7 MEDIUM | IBM WebSphere Application Server Liberty could provide weaker than expected security |
| CVE-2026-1265 | 4.3 MEDIUM | IBM InfoSphere Information Server is vulnerable due to sensitive information written to a |
| CVE-2025-14456 | IBM MQ Appliance uses weaker than expected cryptographic algorithms | |
| CVE-2026-1713 | IBM MQ is affected by an authority vulnerablility |
No comments yet