cvelist/2025/0xxx/CVE-2025-0160.json

134 lines
5.5 KiB
JSON
Raw Normal View History

2024-12-31 20:01:01 +00:00
{
2025-02-28 20:00:35 +00:00
"data_version": "4.0",
2024-12-31 20:01:01 +00:00
"data_type": "CVE",
"data_format": "MITRE",
"CVE_data_meta": {
"ID": "CVE-2025-0160",
2025-02-28 20:00:35 +00:00
"ASSIGNER": "psirt@us.ibm.com",
"STATE": "PUBLIC"
2024-12-31 20:01:01 +00:00
},
"description": {
"description_data": [
{
"lang": "eng",
2025-02-28 20:00:35 +00:00
"value": "IBM FlashSystem (IBM Storage Virtualize (8.5.0.0 through 8.5.0.13, 8.5.1.0, 8.5.2.0 through 8.5.2.3, 8.5.3.0 through 8.5.3.1, 8.5.4.0, 8.6.0.0 through 8.6.0.5, 8.6.1.0, 8.6.2.0 through 8.6.2.1, 8.6.3.0, 8.7.0.0 through 8.7.0.2, 8.7.1.0, 8.7.2.0 through 8.7.2.1) could allow a remote attacker with access to the system to execute arbitrary Java code due to improper restrictions in the RPCAdapter service."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "CWE-114 Process Control",
"cweId": "CWE-114"
}
]
}
]
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "IBM",
"product": {
"product_data": [
{
"product_name": "Storage Virtualize",
"version": {
"version_data": [
{
"version_affected": "<=",
"version_name": "8.5.0.0",
"version_value": "8.5.0.13"
},
{
"version_affected": "=",
"version_value": "8.5.1.0"
},
{
"version_affected": "<=",
"version_name": "8.5.2.0",
"version_value": "8.5.2.3"
},
{
"version_affected": "<=",
"version_name": "8.5.3.0",
"version_value": "8.5.3.1"
},
{
"version_affected": "=",
"version_value": "8.5.4.0"
},
{
"version_affected": "<=",
"version_name": "8.6.0.0",
"version_value": "8.6.0.5"
},
{
"version_affected": "=",
"version_value": "8.6.1.0"
},
{
"version_affected": "<=",
"version_name": "8.6.2.0",
"version_value": "8.6.2.1"
},
{
"version_affected": "=",
"version_value": "8.6.3.0"
},
{
"version_affected": "=",
"version_value": "8.7.1.0"
},
{
"version_affected": "<=",
"version_name": "8.7.2.0",
"version_value": "8.7.2.1"
}
]
}
}
]
}
}
]
}
},
"references": {
"reference_data": [
{
"url": "https://www.ibm.com/support/pages/node/7184182",
"refsource": "MISC",
"name": "https://www.ibm.com/support/pages/node/7184182"
}
]
},
"generator": {
"engine": "Vulnogram 0.2.0"
},
"source": {
"discovery": "UNKNOWN"
},
"impact": {
"cvss": [
{
"attackComplexity": "HIGH",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 8.1,
"baseSeverity": "HIGH",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H",
"version": "3.1"
2024-12-31 20:01:01 +00:00
}
]
}
}