Vulnerability Description
IBM DS8A00( R10.1) 10.10.106.0 and IBM DS8A00 ( R10.0) 10.1.3.010.2.45.0 and IBM DS8900F ( R9.4) 89.40.83.089.42.18.089.44.5.0 IBM System Storage DS8000 could allow a local user with authorized CCW update permissions to delete or corrupt backups due to missing authorization in IBM Safeguarded Copy / GDPS Logical corruption protection mechanisms.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Ds8A00 Firmware | 10.10.106.0 |
| Ibm | Ds8A00 | 10.1 |
Related Weaknesses (CWE)
References
- https://www.ibm.com/support/pages/node/7255039Vendor Advisory
FAQ
What is CVE-2025-36192?
CVE-2025-36192 is a vulnerability with a CVSS score of 6.7 (MEDIUM). IBM DS8A00( R10.1) 10.10.106.0 and IBM DS8A00 ( R10.0) 10.1.3.010.2.45.0 and IBM DS8900F ( R9.4) 89.40.83.089.42.18.089.44.5.0 IBM System Storage DS8000 could allow a local user with authorized CCW up...
How severe is CVE-2025-36192?
CVE-2025-36192 has been rated MEDIUM with a CVSS base score of 6.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-36192?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Ds8A00 Firmware, Ibm Ds8A00.