The management GUI on the IBM SAN Volume Controller and Storwize V7000 6.x before 6.4.1.3 allows remote attackers to bypass authentication and obtain superuser access via IP packets.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:46
Type | Values Removed | Values Added |
---|---|---|
References | () http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004277 - Vendor Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/80716 - |
Information
Published : 2013-02-19 19:55
Updated : 2025-04-11 00:51
NVD link : CVE-2012-6354
Mitre link : CVE-2012-6354
CVE.ORG link : CVE-2012-6354
JSON object : View
Products Affected
ibm
- storwize_v7000
- san_volume_controller_software
CWE
CWE-287
Improper Authentication