IBM Flash System 900 could allow an authenticated attacker to obtain sensitive information and cause a denial of service due to a restricted shell escape vulnerability. IBM X-Force ID: 206229.
2021-10-21T17:15:07.800
2024-11-21T06:01:57.017
Modified
CVSSv3.1: 8.1 (HIGH)
AV:N/AC:L/Au:S/C:P/I:N/A:P
8.0
4.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | ibm | spectrum_virtualize | < 8.4.0.0 | Yes |
| Application | ibm | spectrum_virtualize_for_public_cloud | < 8.4.0.0 | Yes |
| Application | ibm | storwize_v3500_software | < 8.4.0.0 | Yes |
| Application | ibm | storwize_v3700_software | < 8.4.0.0 | Yes |
| Application | ibm | storwize_v5000_software | < 8.4.0.0 | Yes |
| Application | ibm | storwize_v5100_software | < 8.4.0.0 | Yes |
| Application | ibm | storwize_v7000_software | < 8.4.0.0 | Yes |
| Operating System | ibm | san_volume_controller_firmware | < 8.4.0.0 | Yes |
| Operating System | ibm | flashsystem_9100_firmware | < 8.4.0.0 | Yes |
| Hardware | ibm | flashsystem_9100 | - | No |
| Operating System | ibm | flashsystem_9000_firmware | < 8.4.0.0 | Yes |
| Hardware | ibm | flashsystem_9000 | - | No |