Lucene search

K
cveMitreCVE-2009-1520
HistoryMay 05, 2009 - 5:30 p.m.

CVE-2009-1520

2009-05-0517:30:00
CWE-119
mitre
web.nvd.nist.gov
24
cve-2009-1520
buffer overflow
ibm tivoli storage manager
tsm client
security vulnerability
denial of service
arbitrary code execution
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.013

Percentile

85.8%

Buffer overflow in the Web GUI in the IBM Tivoli Storage Manager (TSM) client 5.1.0.0 through 5.1.8.2, 5.2.0.0 through 5.2.5.3, 5.3.0.0 through 5.3.6.4, 5.4.0.0 through 5.4.2.6, and 5.5.0.0 through 5.5.1.17 allows attackers to cause a denial of service (application crash) or execute arbitrary code via unspecified vectors.

Affected configurations

Nvd
Node
ibmtivoli_storage_manager_clientMatch5.1
OR
ibmtivoli_storage_manager_clientMatch5.1.8.0
OR
ibmtivoli_storage_manager_clientMatch5.1.8.2
OR
ibmtivoli_storage_manager_clientMatch5.2
OR
ibmtivoli_storage_manager_clientMatch5.2.5.1
OR
ibmtivoli_storage_manager_clientMatch5.2.5.2
OR
ibmtivoli_storage_manager_clientMatch5.2.5.3
OR
ibmtivoli_storage_manager_clientMatch5.3
OR
ibmtivoli_storage_manager_clientMatch5.3.5.2
OR
ibmtivoli_storage_manager_clientMatch5.3.5.3
OR
ibmtivoli_storage_manager_clientMatch5.3.6.3
OR
ibmtivoli_storage_manager_clientMatch5.3.6.4
OR
ibmtivoli_storage_manager_clientMatch5.4
OR
ibmtivoli_storage_manager_clientMatch5.4.1.1
OR
ibmtivoli_storage_manager_clientMatch5.4.1.2
OR
ibmtivoli_storage_manager_clientMatch5.4.1.96
OR
ibmtivoli_storage_manager_expressMatch5.3
OR
ibmtivoli_storage_manager_expressMatch5.3.3.0
OR
ibmtivoli_storage_manager_expressMatch5.3.6.4
VendorProductVersionCPE
ibmtivoli_storage_manager_client5.1cpe:2.3:a:ibm:tivoli_storage_manager_client:5.1:*:*:*:*:*:*:*
ibmtivoli_storage_manager_client5.1.8.0cpe:2.3:a:ibm:tivoli_storage_manager_client:5.1.8.0:*:*:*:*:*:*:*
ibmtivoli_storage_manager_client5.1.8.2cpe:2.3:a:ibm:tivoli_storage_manager_client:5.1.8.2:*:*:*:*:*:*:*
ibmtivoli_storage_manager_client5.2cpe:2.3:a:ibm:tivoli_storage_manager_client:5.2:*:*:*:*:*:*:*
ibmtivoli_storage_manager_client5.2.5.1cpe:2.3:a:ibm:tivoli_storage_manager_client:5.2.5.1:*:*:*:*:*:*:*
ibmtivoli_storage_manager_client5.2.5.2cpe:2.3:a:ibm:tivoli_storage_manager_client:5.2.5.2:*:*:*:*:*:*:*
ibmtivoli_storage_manager_client5.2.5.3cpe:2.3:a:ibm:tivoli_storage_manager_client:5.2.5.3:*:*:*:*:*:*:*
ibmtivoli_storage_manager_client5.3cpe:2.3:a:ibm:tivoli_storage_manager_client:5.3:*:*:*:*:*:*:*
ibmtivoli_storage_manager_client5.3.5.2cpe:2.3:a:ibm:tivoli_storage_manager_client:5.3.5.2:*:*:*:*:*:*:*
ibmtivoli_storage_manager_client5.3.5.3cpe:2.3:a:ibm:tivoli_storage_manager_client:5.3.5.3:*:*:*:*:*:*:*
Rows per page:
1-10 of 191

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.013

Percentile

85.8%

Related for CVE-2009-1520