Beveiligingsadvies

CVE-2026-6389

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-04-30 21:17:06
Laatst bijgewerkt 2026-05-01 16:37:57
Toegewezen door ibm
CVSS-score 8.8
Status PUBLISHED

Beschrijving

IBM Turbonomic prometurbo agent 8.16.0 through 8.17.6 IBM Turbonomic Application Resource Management grants excessive cluster‑wide permissions, including unrestricted read access to all secrets. An attacker that compromises the operator or its service account can exfiltrate sensitive credentials, escalate privileges, and potentially achieve full cluster compromise.