CVE-2024-31892: IBM Storage Scale
High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.
IBM Storage Scale GUI 5.1.9.0 through 5.1.9.6 and 5.2.0.0 through 5.2.1.1 could allow a user to perform unauthorized actions after intercepting and modifying a csv file due to improper neutralization of formula elements.
Affected products
- IBM Storage Scale: from 5.1.9.0, before 5.1.9.7 (fixed in 5.1.9.7); from 5.2.0.0, before 5.2.2.0 (fixed in 5.2.2.0)
Published 2024-12-14. Last modified 2026-06-17.