IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0 could allow an authenticated user to read or modify another user's command history due to an externally controlled filename.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7284322 |
|
History
Thu, 20 Aug 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 20 Aug 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm ds8900f
Ibm ds8a00 |
|
| Vendors & Products |
Ibm ds8900f
Ibm ds8a00 |
Wed, 19 Aug 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0 could allow an authenticated user to read or modify another user's command history due to an externally controlled filename. | |
| Title | DS8900F and DS8A00 Information Disclosure | |
| First Time appeared |
Ibm
Ibm system Storage Ds8900f Ibm system Storage Ds8a00 |
|
| Weaknesses | CWE-73 | |
| CPEs | cpe:2.3:o:ibm:system_storage_ds8900f:89.40.83.0:*:*:*:*:*:*:* cpe:2.3:o:ibm:system_storage_ds8900f:89.44.25.0:*:*:*:*:*:*:* cpe:2.3:o:ibm:system_storage_ds8A00:10.1.3.0:*:*:*:*:*:*:* cpe:2.3:o:ibm:system_storage_ds8A00:10.11.35.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm system Storage Ds8900f Ibm system Storage Ds8a00 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published: 2026-08-19T21:22:34.031Z
Updated: 2026-08-20T16:27:36.957Z
Reserved: 2025-04-15T21:16:59.139Z
Link: CVE-2025-36398
Updated: 2026-08-20T16:24:31.166Z
Status : Awaiting Analysis
Published: 2026-08-19T22:16:36.640
Modified: 2026-08-20T17:17:20.533
Link: CVE-2025-36398
No data.