IBM Storage Protect Server 8.2.0 IBM Storage Protect Plus Server is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7267783 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
02 Apr 2026, 20:46
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:ibm:storage_protect_server:8.2.0:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* |
|
| Summary |
|
|
| First Time |
Linux
Microsoft Microsoft windows Ibm aix Ibm storage Protect Server Ibm Linux linux Kernel |
|
| References | () https://www.ibm.com/support/pages/node/7267783 - Vendor Advisory |
01 Apr 2026, 01:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-01 01:16
Updated : 2026-04-02 20:46
NVD link : CVE-2025-13855
Mitre link : CVE-2025-13855
CVE.ORG link : CVE-2025-13855
JSON object : View
Products Affected
microsoft
- windows
linux
- linux_kernel
ibm
- aix
- storage_protect_server
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
