File Read Vulnerability in IBM Storage Solutions
CVE-2018-1438
7.5HIGH
Summary
This vulnerability affects several IBM storage products, allowing unauthorized attackers to exploit the web handler /DLSnap to read arbitrary files from the system. Such access can lead to the exposure of sensitive information, posing a significant security risk to the affected systems. It is crucial for organizations using these IBM products to evaluate their security posture and implement the necessary updates to mitigate potential threats.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved