CVE-2012-6354: IBM San Volume Controller Software

High severity, CVSS 7.5. EPSS: 2.1% chance of exploitation in the next 30 days.

The management GUI on the IBM SAN Volume Controller and Storwize V7000 6.x before 6.4.1.3 allows remote attackers to bypass authentication and obtain superuser access via IP packets.

Affected products

  • IBM San Volume Controller Software: version 6.1.0.0 only; version 6.2.0.0 only; version 6.3.0.0 only; version 6.4.0.0 only
  • IBM Storwize v7000: affected versions not specified

Published 2013-02-19. Last modified 2026-06-16.