Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3023▼ 71 respecto a la semana anterior
Críticas / altas1419▲ 54 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 2.4% | — | IBM Spectrum ProtectIBM Tivoli Storage ManagerIBM Spectrum Protect Manager FOR Virtual Environments Data Protection FOR VmwareIBM Tivoli Storage Manager FOR Virtual Environments Data Protection FOR Vmware+2 | 12/11/2018 | 17/6/2026 | IBM Spectrum Protect 7.1 and 8.1 dsmc and dsmcad processes incorrectly accumulate TCP/IP sockets in a CLOSE_WAIT state. This can cause TCP/IP resource leakage and may result in a denial of service. IBM X-Force ID: 148871. | |
| Modificada | Media (5.5) | 0.29% | — | IBM Tivoli Storage ManagerIBM Tivoli Storage Manager FOR Space ManagementIBM Tivoli Storage Manager FOR Virtual Environments | 26/9/2018 | 17/6/2026 | IBM Spectrum Protect 7.1 and 8.1 could allow a local user to corrupt or delete highly sensitive information that would cause a denial of service to other users. IBM X-Force ID: 142696. | |
| Modificada | Alta (8.8) | 0.55% | — | IBM Tivoli Storage Manager FOR Virtual Environments Data Protection FOR VmwareIBM Tivoli Storage Flashcopy Manager FOR Vmware | 15/2/2017 | 17/6/2026 | IBM Tivoli Storage Manager for Virtual Environments 7.1 (VMware) is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM Reference #: 1995545. | |
| Modificada | Media (6.5) | 0.33% | — | IBM Tivoli Storage ManagerIBM Tivoli Storage Manager FOR Virtual Environments Data Protection FOR Vmware | 1/2/2017 | 17/6/2026 | IBM Tivoli Storage Manager discloses unencrypted login credentials to Vmware vCenter that could be obtained by a local user. | |
| Modificada | Media (6.8) | 1.00% | — | IBM Tivoli Storage Manager FOR Virtual Environments Data Protection FOR Vmware | 1/2/2017 | 17/6/2026 | IBM Tivoli Storage Manager for Virtual Environments (VMware) could disclose the Windows domain credentials to a user with a high level of privileges. | |
| Modificada | Alta (8.5) | 0.96% | — | IBM Tivoli Storage Manager FOR Virtual Environments | 25/11/2016 | 17/6/2026 | IBM Tivoli Storage Manger for Virtual Environments: Data Protection for VMware (aka Spectrum Protect for Virtual Environments) 6.4.x before 6.4.3.4 and 7.1.x before 7.1.6 allows remote authenticated users to bypass a TSM credential requirement and obtain administrative access by leveraging multiple simultaneous logins. | |
| Modificada | Crítica (10) | 3.9% | — | IBM Tivoli Storage Flashcopy Manager FOR VmwareIBM Tivoli Storage Manager FOR Virtual Environments Data Protection FOR Vmware | 21/2/2016 | 17/6/2026 | The Data Protection component in the VMware vSphere GUI in IBM Tivoli Storage Manager for Virtual Environments: Data Protection for VMware (aka Spectrum Protect for Virtual Environments) 6.3 before 6.3.2.5, 6.4 before 6.4.3.1, and 7.1 before 7.1.4 and Tivoli Storage FlashCopy Manager for VMware (aka Spectrum Protect… | |
| Modificada | Baja (3.5) | 0.78% | — | IBM Tivoli Storage Flashcopy ManagerIBM Tivoli Storage Manager FOR Virtual Environments | 4/10/2015 | 17/6/2026 | Cross-site scripting (XSS) vulnerability in IBM Tivoli Storage Manger for Virtual Environments: Data Protection for VMware 6.3 before 6.3.2.5, 6.4 before 6.4.3.1, and 7.1 before 7.1.3 and Tivoli Storage FlashCopy Manager for VMware 3.1 before 3.1.1.3, 3.2 before 3.2.0.6, and 4.1 before 4.1.3.0 allows remote… | |
| Modificada | Media (4.1) | 0.26% | — | IBM Tivoli Storage Manager FOR Virtual Environments | 26/5/2014 | 17/6/2026 | The Data Protection for VMware component in IBM Tivoli Storage Manager for Virtual Environments (TSMVE) 6.3 through 7.1.0.2 does not properly check authorization for backup and restore operations, which allows local users to obtain sensitive VM data or cause a denial of service (disk consumption) via unspecified GUI… |