IBM Storage Protect for Virtual Environments Cryptographic Vulnerability Allowing Decryption of Sensitive Information

Vulnerability

A vulnerability exists in IBM Storage Protect for Virtual Environments: Data Protection for VMware, as well as in IBM Storage Protect Backup-Archive Client versions 8.1.0.0 through 8.1.23.0. These products utilize cryptographic algorithms that are weaker than expected, potentially allowing an attacker to decrypt highly sensitive information.

Impact

Exploitation of this vulnerability could lead to the unauthorized decryption of sensitive information, allowing attackers to access and potentially misuse this data.

Remediation

Users are advised to upgrade to IBM Storage Protect for Virtual Environments version 8.1.24.0 or IBM Storage Protect Backup-Archive Client version 8.1.24.0. Instructions for downloading these versions are available on the IBM Support website.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
2.5
exploitability
6.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.