IBM Storage Scale 5.2.3.0-5.2.3.8/6.0.0.0-6.0.1.0 GUI Log Exposes Passwords
CVE-2026-19483 Published on August 13, 2026
The following vulnerabilities that can affect IBM Storage Scale and the Management GUI are now fixed in 5.2.3.9 or higher and 6.0.1.1 or higher
IBM Storage Scale 5.2.3.0 through 5.2.3.8, and 6.0.0.0 through 6.0.1.0 Secrets may be disclosed in log files in IBM Storage Scale Management GUI The admin password is logged into the GUI log of IBM Storage Scale Systems Deploy and Upgrade from GUI. Secrets may be disclosed in information related to exceptions in IBM Storage Scale Management GUI.
Vulnerability Analysis
CVE-2026-19483 can be exploited with local system access, and requires small amount of user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have a high impact on confidentiality and integrity, and no impact on availability.
Weakness Type
Insertion of Sensitive Information into Log File
Information written to log files can be of a sensitive nature and give valuable guidance to an attacker or expose sensitive user information.
Products Associated with CVE-2026-19483
Want to know whenever a new CVE is published for IBM Storage Scale? stack.watch will email you.
Affected Versions
IBM Storage Scale:- Version 5.2.3.0, <= 5.2.3.8 is affected.
- Version 6.0.0.0, <= 6.0.1.0 is affected.