{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-81208","assignerOrgId":"9a959283-ebb5-44b6-b705-dcc2bbced522","state":"PUBLISHED","assignerShortName":"ibm","dateReserved":"2026-08-26T16:49:24.570Z","datePublished":"2026-09-23T21:37:48.665Z","dateUpdated":"2026-09-23T21:37:48.665Z"},"containers":{"cna":{"providerMetadata":{"orgId":"9a959283-ebb5-44b6-b705-dcc2bbced522","shortName":"ibm","dateUpdated":"2026-09-23T21:37:48.665Z"},"title":"DataStage on Cloud Pak for Data has several vulnerabilities","problemTypes":[{"descriptions":[{"lang":"en","cweId":"CWE-522","description":"CWE-522 Insufficiently Protected Credentials","type":"CWE"}]}],"affected":[{"vendor":"IBM","product":"DataStage on Cloud Pak for Data","versions":[{"status":"affected","version":"5.4.0.0"}],"cpes":["cpe:2.3:a:ibm:datastage_on_cloud_pak_for_data:5.4.0.0:*:*:*:*:*:*:*"]}],"descriptions":[{"lang":"en","value":"IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow an authenticated user to access sensitive information due to improper handling of encrypted credentials. An attacker could exploit this vulnerability to obtain credentials intended for other users or environments.","supportingMedia":[{"type":"text/html","base64":false,"value":"<p>IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow an authenticated user to access sensitive information due to improper handling of encrypted credentials. An attacker could exploit this vulnerability to obtain credentials intended for other users or environments.</p>"}]}],"references":[{"url":"https://www.ibm.com/support/pages/node/7288649","tags":["vendor-advisory","patch"]}],"metrics":[{"format":"CVSS","scenarios":[{"lang":"en","value":"GENERAL"}],"cvssV3_1":{"version":"3.1","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE","baseSeverity":"HIGH","baseScore":7.7,"vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N"}}],"solutions":[{"lang":"en","value":"IBM strongly recommends addressing the vulnerability now by upgrading DataStage on Cloud Pak for Data.\nProduct(s)Version(s) number and/or range Remediation/Fix/InstructionsDataStage on Cloud Pak for Data5.4.0.0Upgrade to 5.4 patch 7 or later by following these instructions.","supportingMedia":[{"type":"text/html","base64":false,"value":"<div><p><strong>IBM strongly recommends addressing the vulnerability now by upgrading DataStage on Cloud Pak for Data.</strong></p><div><table><tbody><tr><td>Product(s)</td><td>Version(s) number and/or range </td><td>Remediation/Fix/Instructions</td></tr><tr><td>DataStage on Cloud Pak for Data</td><td>5.4.0.0</td><td><p>Upgrade to 5.4 patch 7 or later by following these <a href=\"https://www.ibm.com/docs/en/software-hub/5.4.x?topic=overview-available-patches-software-hub-version-540\" rel=\"nofollow\">instructions</a>.</p></td></tr></tbody></table></div><p></p></div>"}]}]}}}