IBM Fusion
cpe:2.3:a:ibm:storage_fusion_hci:*:*:*:*:*:*:*
- >= 2.3.0, <= 2.8.2
A vulnerability exists in IBM Fusion and IBM Fusion HCI versions 2.3.0 through 2.8.2, allowing an attacker with access to a Fusion container to establish an external network connection. This issue arises from improper restriction of communication channels, enabling unauthorized data egress.
Exploitation of this vulnerability could lead to unauthorized external network connections from within a Fusion container, allowing for potential data exfiltration or communication with external malicious entities.
Users are advised to upgrade to version 2.9.0. Instructions for upgrading can be found in the IBM Fusion README and the IBM Fusion HCI README.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.