CVE-2018-2025

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
25/11/2019
Last modified:
05/12/2019

Description

IBM Spectrum Protect Backup-Archive Client and IBM Spectrum Protect for Virtual Environments 7.1 and 8.1 creates directories/files in the CIT sub directory that are read/writable by everyone. IBM X-Force ID: 155551.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:spectrum_protect:*:*:*:*:*:*:*:* 7.1.0.0 (including) 7.1.8.5 (including)
cpe:2.3:a:ibm:spectrum_protect:*:*:*:*:*:*:*:* 8.1.0.0 (including) 8.1.8.0 (including)
cpe:2.3:a:ibm:spectrum_protect_for_virtual_environments:*:*:*:*:*:hyper-v:*:* 7.1.0.0 (including) 7.1.8.5 (including)
cpe:2.3:a:ibm:spectrum_protect_for_virtual_environments:*:*:*:*:*:vmware:*:* 7.1.0.0 (including) 7.1.8.5 (including)
cpe:2.3:a:ibm:spectrum_protect_for_virtual_environments:*:*:*:*:*:hyper-v:*:* 8.1.0.0 (including) 8.1.8.0 (including)
cpe:2.3:a:ibm:spectrum_protect_for_virtual_environments:*:*:*:*:*:vmware:*:* 8.1.0.0 (including) 8.1.8.0 (including)