IBM Storage Virtualize 8.4, 8.5, 8.6, and 8.7 could allow an authenticated user to escalate their privileges in an SSH session due to incorrect authorization checks to access resources.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7240796 |
|
History
Thu, 21 Aug 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:ibm:storage_virtualize:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.4.1.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.4.2.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.4.2.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.4.3.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.5.1.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.5.3.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.5.3.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.5.4.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.6.1.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.6.2.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.6.2.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.6.3.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.7.1.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.7.2.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.7.2.1:*:*:*:*:*:*:* |
Mon, 18 Aug 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 18 Aug 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Storage Virtualize 8.4, 8.5, 8.6, and 8.7 could allow an authenticated user to escalate their privileges in an SSH session due to incorrect authorization checks to access resources. | |
| Title | IBM Storage Virtualize privilege escalation | |
| First Time appeared |
Ibm
Ibm storage Virtualize |
|
| Weaknesses | CWE-863 | |
| CPEs | cpe:2.3:a:ibm:storage_virtualize:8.4:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.5:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.6:*:*:*:*:*:*:* cpe:2.3:a:ibm:storage_virtualize:8.7:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm storage Virtualize |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published: 2025-08-18T13:39:41.381Z
Updated: 2025-08-19T03:55:31.062Z
Reserved: 2025-04-15T21:16:18.171Z
Link: CVE-2025-36120
Updated: 2025-08-18T13:56:55.989Z
Status : Analyzed
Published: 2025-08-18T14:15:29.280
Modified: 2025-08-21T19:25:01.660
Link: CVE-2025-36120
No data.