Known vulnerabilities in XIV Storage System Gen2
Vendor:
IBM Corporation
Software:
XIV Storage System Gen2
Software CPE:
cpe:2.3:a:ibm_corporation:xiv_storage_system_gen2:*:*:*:*:*:*:*:*
Website:
https://www.ibm.com/us-en
Total vulnerabilities:
7
Public exploits:
2
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (7)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU91588 - Cryptographic Issues CVE-2015-0204 |
CWE-310 | Medium | 10.2.4.e-6 | 10.06.2024 |
SB2015010903 SB2018042477 SB2015031902 |
||
| #VU84832 - Out-of-bounds write CVE-2015-0235 |
CWE-787 | High | 10.2.4.e-7 | 28.12.2023 |
SB2018042470 SB2018042471 SB2018042472 and 3 more |
||
| #VU5214 - Use of a Broken or Risky Cryptographic Algorithm CVE-2014-3566 |
CWE-327 | Medium | 10.2.4.e-8 | 20.01.2017 |
SB2014101601 SB2014102102 SB2016022401 and 78 more |
||
| #VU719 - Improper Access Control CVE-2016-0778 |
CWE-284 | High | 10.2.4.e-5, 10.2.4.e-8 | 03.10.2016 |
SB2016011401 SB2016011402 SB2016011501 and 17 more |
||
| #VU718 - Improper Access Control CVE-2016-0777 |
CWE-284 | Low | 10.2.4.e-5, 10.2.4.e-8 | 03.10.2016 |
SB2016011401 SB2016011402 SB2016011501 and 19 more |
||
| #VU90 - Exposure of sensitive information to an unauthorized actor CVE-2015-2808 |
CWE-200 | Medium | 10.2.4.e-8 | 05.07.2016 |
SB2015040102 SB2015040103 SB2023011274 and 27 more |
||
| #VU2950 - Cryptographic Issues CVE-2014-0224 |
CWE-310 | Medium | - | 30.11.-0001 |
SB2014060501 SB2014060502 SB2014060503 and 42 more |