Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2014-3077

Disclosure Date: September 15, 2014 (last updated October 05, 2023)
IBM SONAS and System Storage Storwize V7000 Unified (aka V7000U) 1.3.x and 1.4.x before 1.4.3.4 store the chkauth password in the audit log, which allows local users to obtain sensitive information by reading this log file.
0
Attacker Value
Unknown

CVE-2014-3043

Disclosure Date: July 19, 2014 (last updated October 05, 2023)
IBM Storwize V7000 Unified 1.3.x and 1.4.x before 1.4.3.3 allows remote authenticated users to gain privileges by leveraging access to the service account.
0
Attacker Value
Unknown

CVE-2014-0875

Disclosure Date: July 07, 2014 (last updated October 05, 2023)
Active Cloud Engine (ACE) in IBM Storwize V7000 Unified 1.3.0.0 through 1.4.3.x allows remote attackers to bypass intended ACL restrictions in opportunistic circumstances by leveraging incorrect ACL synchronization over an unreliable NFS connection that requires retransmissions.
0
Attacker Value
Unknown

CVE-2013-6737

Disclosure Date: June 21, 2014 (last updated October 05, 2023)
IBM System Storage Storwize V7000 Unified 1.3.x and 1.4.x before 1.4.3.0 does not properly restrict the content of a dump file upon encountering a 1691 hardware fault, which allows remote authenticated users to obtain sensitive customer-data fragments by reading this file after it is copied.
0