IBM Storage Virtualize Vulnerabilities Let Attackers Execute Arbitrary Code
Posted: Tue Mar 04, 2025 1:06 pm
IBM has issued urgent security advisories for two high-severity vulnerabilities (CVE-2025-0159, CVE-2025-0160) affecting its Storage Virtualize product suite, including SAN Volume Controller, Storwize, and FlashSystem families.
These flaws enable attackers to bypass authentication and execute arbitrary code remotely via the graphical user interface (GUI), posing significant risks to enterprise storage environments.
https://cybersecuritynews.com/ibm-stora ... abilities/
These flaws enable attackers to bypass authentication and execute arbitrary code remotely via the graphical user interface (GUI), posing significant risks to enterprise storage environments.
https://cybersecuritynews.com/ibm-stora ... abilities/