CVE-2026-5935: IBM Total Storage Service Console

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

IBM Total Storage Service Console (TSSC) / TS4500 IMC 9.2, 9.3, 9.4, 9.5, 9.6 TSSC/IMC could allow an unauthenticated user to execute arbitrary commands with normal user privileges on the system due to improper validation of user supplied input.

Affected products

  • IBM Total Storage Service Console: version 9.2 only; version 9.3 only; version 9.4 only; version 9.5 only; version 9.6 only
  • IBM TS4500 Imc: version 9.2 only; version 9.3 only; version 9.4 only; version 9.5 only; version 9.6 only

Published 2026-04-23. Last modified 2026-06-17.