The management GUI on the IBM SAN Volume Controller and Storwize V7000 6.x before 6.4.1.3 allows remote attackers to bypass authentication and obtain superuser access via IP packets.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:46
Type | Values Removed | Values Added |
---|---|---|
References | () http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004277 - Vendor Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/80716 - |
Information
Published : 2013-02-19 19:55
Updated : 2024-11-21 01:46
NVD link : CVE-2012-6354
Mitre link : CVE-2012-6354
CVE.ORG link : CVE-2012-6354
JSON object : View
Products Affected
ibm
- san_volume_controller_software
- storwize_v7000
CWE
CWE-287
Improper Authentication