IBM Fusion HCI
cpe:2.3:a:ibm:storage_fusion_hci:*:*:*:*:*:*:*
- >= 2.2.0, <= 2.10.0
A vulnerability exists in IBM Fusion versions 2.2.0 through 2.10.1, IBM Fusion HCI versions 2.2.0 through 2.10.0, and IBM Fusion HCI for watsonx versions 2.8.2 through 2.10.0. These versions use insecure default configurations that could expose AMQStreams without client authentication, potentially allowing an attacker to perform unauthorized actions.
Exploitation of this vulnerability could lead to unauthorized actions being performed on AMQStreams, due to the lack of client authentication.
Users are advised to upgrade to IBM Fusion 2.11.0, IBM Fusion HCI 2.11.0, or IBM Fusion HCI for watsonx 2.11.0. Instructions for upgrading can be found in the respective product README files.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.