CVE-2025-36255
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0 could allow an authenticated user to create a user with privileged user roles due to improper privileged defined with unsafe actions.
Affected (2)
Products: Ibm: Ds8900f Firmware, Ds8a00 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 89.40.83.0 to 89.44.25.0 |
| Running on/with | Platform Versions |
|---|---|
Ibm Ds8900f | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| From 10.1.3.0 to 10.11.35.0 |
| Running on/with | Platform Versions |
|---|---|
Ibm Ds8a00 | All versions |
References (1)
Timeline
No history available yet.