6
CVE-2025-36238
- EPSS 0.01%
- Veröffentlicht 02.02.2026 23:15:59
- Zuletzt bearbeitet 19.02.2026 14:41:41
- Quelle psirt@us.ibm.com
- CVE-Watchlists
- Unerledigt
IBM PowerVM Hypervisor FW1110.00 through FW1110.03, FW1060.00 through FW1060.51, and FW950.00 through FW950.F0 could allow a local user with administration privileges to obtain sensitive information from a Virtual TPM through a series of PowerVM service procedures.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Powervm Hypervisor Versionfw950.00
Ibm ≫ Powervm Hypervisor Versionfw950.10
Ibm ≫ Powervm Hypervisor Versionfw950.11
Ibm ≫ Powervm Hypervisor Versionfw950.20
Ibm ≫ Powervm Hypervisor Versionfw950.30
Ibm ≫ Powervm Hypervisor Versionfw950.40
Ibm ≫ Powervm Hypervisor Versionfw950.50
Ibm ≫ Powervm Hypervisor Versionfw950.60
Ibm ≫ Powervm Hypervisor Versionfw950.70
Ibm ≫ Powervm Hypervisor Versionfw950.71
Ibm ≫ Powervm Hypervisor Versionfw950.80
Ibm ≫ Powervm Hypervisor Versionfw950.90
Ibm ≫ Powervm Hypervisor Versionfw950.a0
Ibm ≫ Powervm Hypervisor Versionfw950.b0
Ibm ≫ Powervm Hypervisor Versionfw950.c0
Ibm ≫ Powervm Hypervisor Versionfw950.c1
Ibm ≫ Powervm Hypervisor Versionfw950.c2
Ibm ≫ Powervm Hypervisor Versionfw950.d0
Ibm ≫ Powervm Hypervisor Versionfw950.d1
Ibm ≫ Powervm Hypervisor Versionfw950.e0
Ibm ≫ Powervm Hypervisor Versionfw950.e1
Ibm ≫ Powervm Hypervisor Versionfw950.f0
Ibm ≫ Powervm Hypervisor Versionfw1060.00
Ibm ≫ Powervm Hypervisor Versionfw1060.10
Ibm ≫ Powervm Hypervisor Versionfw1060.12
Ibm ≫ Powervm Hypervisor Versionfw1060.20
Ibm ≫ Powervm Hypervisor Versionfw1060.21
Ibm ≫ Powervm Hypervisor Versionfw1060.40
Ibm ≫ Powervm Hypervisor Versionfw1060.41
Ibm ≫ Powervm Hypervisor Versionfw1060.50
Ibm ≫ Powervm Hypervisor Versionfw1060.51
Ibm ≫ Powervm Hypervisor Versionfw1110.00
Ibm ≫ Powervm Hypervisor Versionfw1110.01
Ibm ≫ Powervm Hypervisor Versionfw1110.03
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.01% | 0.003 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| psirt@us.ibm.com | 6 | 1.5 | 4 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N
|
CWE-497 Exposure of Sensitive System Information to an Unauthorized Control Sphere
The product does not properly prevent sensitive system-level information from being accessed by unauthorized actors who do not have the same level of access to the underlying system as the product does.