{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-23T02:18:53.203","vulnerabilities":[{"cve":{"id":"CVE-2024-38325","sourceIdentifier":"psirt@us.ibm.com","published":"2025-01-27T16:15:31.117","lastModified":"2025-08-14T19:10:41.307","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI \n\ncould allow a remote attacker to obtain sensitive information, caused by sending network requests over an insecure channel. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques."},{"lang":"es","value":"La interfaz de línea de comandos (CLI) de IBM Storage Defender 2.0.0 a 2.0.7 on-prem defend-sensor-cmd podría permitir que un atacante remoto obtenga información confidencial mediante el envío de solicitudes de red a través de un canal inseguro. Un atacante podría aprovechar esta vulnerabilidad para obtener información confidencial mediante técnicas de intermediario."}],"metrics":{"cvssMetricV31":[{"source":"psirt@us.ibm.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","baseScore":5.9,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":2.2,"impactScore":3.6},{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":3.6}]},"weaknesses":[{"source":"psirt@us.ibm.com","type":"Secondary","description":[{"lang":"en","value":"CWE-311"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:storage_defender:*:*:*:*:*:*:*:*","versionStartIncluding":"2.0.0","versionEndExcluding":"2.0.8","matchCriteriaId":"C8CB2BC3-353A-43AF-83D7-EA9A62CE7A7B"}]}]}],"references":[{"url":"https://www.ibm.com/support/pages/node/7168640","source":"psirt@us.ibm.com","tags":["Vendor Advisory"]}]}}]}