Show filters
287 Total Results
Displaying 71-80 of 287
Sort by:
Attacker Value
Unknown
CVE-2016-8916
Disclosure Date: May 05, 2017 (last updated November 26, 2024)
IBM Tivoli Storage Manager 5.5, 6.1-6.4, and 7.1 stores password information in a log file that could be read by a local user when a set password command is issued. IBM X-Force ID: 118472.
0
Attacker Value
Unknown
CVE-2015-0107
Disclosure Date: April 24, 2017 (last updated November 26, 2024)
IBM Tivoli IT Asset Management for IT, Tivoli Service Request Manager, and Change and Configuration Management Database 7.1 through 7.1.1.8 and 7.2 and Maximo Asset Management and Maximo Industry Solutions 7.1 through 7.1.1.8, 7.5 before 7.5.0.7 IFIX003, and 7.6 before 7.6.0.0 IFIX002 allow remote authenticated users to conduct directory traversal attacks via unspecified vectors.
0
Attacker Value
Unknown
CVE-2015-0104
Disclosure Date: April 24, 2017 (last updated November 26, 2024)
IBM Tivoli IT Asset Management for IT, Tivoli Service Request Manager, and Change and Configuration Management Database 7.1 through 7.1.1.8 and 7.2 and Maximo Asset Management and Maximo Industry Solutions 7.1 through 7.1.1.8, 7.5 before 7.5.0.7 IFIX003, and 7.6 before 7.6.0.0 IFIX002 allow remote authenticated users to execute arbitrary code via unspecified vectors.
0
Attacker Value
Unknown
CVE-2016-8940
Disclosure Date: March 07, 2017 (last updated November 26, 2024)
IBM Tivoli Storage Manager (IBM Spectrum Protect) 6.1, 6.2, 6.3, and 7.1 does not perform sufficient authority checking on SQL queries. As a result, an attacker is able to submit SQL queries that access database tables that are not intended for access or use by administrators. The access of these product specific database tables may allow access to passwords or other sensitive information for the product. IBM Reference #: 1998946.
0
Attacker Value
Unknown
CVE-2016-8998
Disclosure Date: February 24, 2017 (last updated November 26, 2024)
IBM Tivoli Storage Manager Server 7.1 could allow an authenticated user with TSM administrator privileges to cause a buffer overflow using a specially crafted SQL query and execute arbitrary code on the server. IBM Reference #: 1998747.
0
Attacker Value
Unknown
CVE-2016-6033
Disclosure Date: February 15, 2017 (last updated November 26, 2024)
IBM Tivoli Storage Manager for Virtual Environments 7.1 (VMware) is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM Reference #: 1995545.
0
Attacker Value
Unknown
CVE-2016-5918
Disclosure Date: February 08, 2017 (last updated November 26, 2024)
IBM Tivoli Storage Manager HSM for Windows displays the encrypted Tivoli Storage Manager password in application trace output if the password access option is prompt and the password is changed.
0
Attacker Value
Unknown
CVE-2016-6110
Disclosure Date: February 01, 2017 (last updated November 25, 2024)
IBM Tivoli Storage Manager discloses unencrypted login credentials to Vmware vCenter that could be obtained by a local user.
0
Attacker Value
Unknown
CVE-2016-6046
Disclosure Date: February 01, 2017 (last updated November 25, 2024)
IBM Tivoli Storage Manager Operations Center is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
0
Attacker Value
Unknown
CVE-2016-6034
Disclosure Date: February 01, 2017 (last updated November 25, 2024)
IBM Tivoli Storage Manager for Virtual Environments (VMware) could disclose the Windows domain credentials to a user with a high level of privileges.
0