
A new vulnerability with increased severity was disclosed for IBM DS8A00 and DS8900F (CVE-2025-36255) https://vuldb.com/vuln/393447
Post summary
A new, more severe vulnerability (CVE-2025-36255) has been disclosed for IBM DS8A00 and DS8900F.
Signal is active with 1 mentions in latest observed window
Recommended action window: Monitor and triage in normal cycle
NVD description
IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0 could allow an authenticated user to create a user with privileged user roles due to improper privileged defined with unsafe actions.
Priority
LOW
Exploitation
NONE
PoC
NONE
Patch
NONE
Momentum
NONE
If you run products in this scope, you should treat this CVE as relevant to your environment.
1 version affected across 4 products

A new vulnerability with increased severity was disclosed for IBM DS8A00 and DS8900F (CVE-2025-36255) https://vuldb.com/vuln/393447
Post summary
A new, more severe vulnerability (CVE-2025-36255) has been disclosed for IBM DS8A00 and DS8900F.
4 of 4 entries
| Part | Vendor | Product | Version | Target SW | Target HW |
|---|---|---|---|---|---|
| HW | ibm | ds8900f | - | - | - |
| OS | ibm | ds8900f_firmware | - | - | - |
| HW | ibm | ds8a00 | - | - | - |
| OS | ibm | ds8a00_firmware | - | - | - |