CVE-2016-0361

MEDIUM

IBM GPFS <3.5.0.29-4.1.1.4 - Info Disclosure

Title source: llm

Description

IBM General Parallel File System (GPFS) 3.5 before 3.5.0.29 efix 6 and 4.1.1 before 4.1.1.4 efix 9, when the Spectrum Scale GUI is used with DB2 on Linux, UNIX and Windows, allows remote authenticated users to obtain sensitive information via unspecified vectors, as demonstrated by discovering ADMIN passwords.

Scores

CVSS v3 6.5
EPSS 0.0020
EPSS Percentile 42.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Classification

Status draft

Affected Products (7)

ibm/general_parallel_file_system
ibm/general_parallel_file_system
ibm/general_parallel_file_system
ibm/general_parallel_file_system
ibm/general_parallel_file_system
ibm/general_parallel_file_system
ibm/general_parallel_file_system

Timeline

Published Aug 08, 2016
Tracked Since Feb 18, 2026