CVE-2021-38930
Summary
| CVE | CVE-2021-38930 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-04-11 19:15:00 UTC |
| Updated | 2022-04-15 18:46:00 UTC |
| Description | IBM System Storage DS8000 Management Console (HMC) R8.5 88.5x.x.x, R9.1 89.1x.0.0, and R9.2 89.2x.0.0 could allow a remote attacker to obtain sensitive information through unpublished URLs. IBM X-Force ID: 210331. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Ibm | System Storage Ds8000 Management Console | - | All | All | All |
| Operating System | Ibm | System Storage Ds8000 Management Console Firmware | 88.50.0.0 | All | All | All |
| Operating System | Ibm | System Storage Ds8000 Management Console Firmware | 89.10.0.0 | All | All | All |
| Operating System | Ibm | System Storage Ds8000 Management Console Firmware | 89.20.0.0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| ibm-ss-cve202138930-info-disc (210331) | XF | exchange.xforce.ibmcloud.com | |
| Security Bulletin: Vulnerabilities have been identified in Apache Log4j and the application code shipped with the DS8000 Hardware Management Console (HMC) | CONFIRM | www.ibm.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.