Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Spectrum Protect Operations Center
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-4955 1 Ibm 1 Spectrum Protect Operations Center 2021-02-17 5.2 MEDIUM 8.0 HIGH
IBM Spectrum Protect Operations Center 7.1 and 8.1could allow a remote attacker to execute arbitrary code on the system, caused by improper parameter validation. By creating an unspecified servlet request with specially crafted input parameters, an attacker could exploit this vulnerability to load a malicious .dll with elevated privileges. IBM X-Force ID: 192155.
CVE-2019-4088 1 Ibm 1 Spectrum Protect Operations Center 2020-08-24 7.2 HIGH 7.8 HIGH
IBM Spectrum Protect Servers 7.1 and 8.1 and Storage Agents could allow a local attacker to gain elevated privileges on the system, caused by loading a specially crafted library loaded by the dsmqsan module. By setting up such a library, a local attacker could exploit this vulnerability to gain root privileges on the vulnerable system. IBM X-Force ID: 157511.