IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0 could allow an attacker to bypass security authentication due to improperly encoding of DSCLI command output to obtain sensitive information or cause a denial of service.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7284322 |
|
History
Wed, 19 Aug 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0 could allow an attacker to bypass security authentication due to improperly encoding of DSCLI command output to obtain sensitive information or cause a denial of service. | |
| Title | DS8900F and DS8A00 Authentication Bypass | |
| First Time appeared |
Ibm
Ibm system Storage Ds8900f Ibm system Storage Ds8a00 |
|
| Weaknesses | CWE-116 | |
| CPEs | cpe:2.3:o:ibm:system_storage_ds8900f:89.40.83.0:*:*:*:*:*:*:* cpe:2.3:o:ibm:system_storage_ds8900f:89.44.25.0:*:*:*:*:*:*:* cpe:2.3:o:ibm:system_storage_ds8A00:10.1.3.0:*:*:*:*:*:*:* cpe:2.3:o:ibm:system_storage_ds8A00:10.11.35.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm system Storage Ds8900f Ibm system Storage Ds8a00 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-08-19T21:22:52.067Z
Reserved: 2025-04-15T21:16:44.887Z
Link: CVE-2025-36254
No data.
Status : Received
Published: 2026-08-19T22:16:36.303
Modified: 2026-08-19T22:16:36.303
Link: CVE-2025-36254
No data.
OpenCVE Enrichment
No data.