CVE-2024-22326: IBM DS8900F Firmware
Medium severity, CVSS 6.3. EPSS: 0.4% chance of exploitation in the next 30 days.
IBM System Storage DS8900F 89.22.19.0, 89.30.68.0, 89.32.40.0, 89.33.48.0, 89.40.83.0, and 89.40.93.0 could allow a remote user to create an LDAP connection with a valid username and empty password to establish an anonymous connection. IBM X-Force ID: 279518.
Affected products
- IBM DS8900F Firmware: version 89.22.19.0 only; version 89.30.68.0 only; version 89.32.40.0 only; version 89.33.48.0 only; version 89.40.83.0 only; version 89.40.93.0 only
Published 2024-06-06. Last modified 2026-06-17.