CVE-2017-1378: IBM Tivoli Storage Manager

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM Spectrum Protect 7.1 and 8.1 (formerly Tivoli Storage Manager) disclosed unencrypted login credentials to Vmware vCenter in the application trace output which could be obtained by a local user. IBM X-Force ID: 126875.

Affected products

  • IBM Tivoli Storage Manager: version 6.1 only; version 6.1.0 only; version 6.1.1 only; version 6.1.2 only; version 6.1.3 only; version 6.1.4 only; …

Published 2017-10-05. Last modified 2026-06-17.