PT-2007-3479 · Ibm · Tivoli Universal Agent+3

Publicado

2007-04-22

·

Atualizado

2018-10-16

·

CVE-2007-2137

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions IBM Tivoli Monitoring Express version 6.1.0 before Fix Pack 2 Tivoli Universal Agent (affected versions not specified) Windows OS Monitoring agent (affected versions not specified) Enterprise Portal Server (affected versions not specified)
Description The issue is a heap-based buffer overflow in kde.dll, which allows remote attackers to execute arbitrary code by sending a long string to a certain TCP port.
Recommendations For IBM Tivoli Monitoring Express version 6.1.0, apply Fix Pack 2 to resolve the issue. For Tivoli Universal Agent, Windows OS Monitoring agent, and Enterprise Portal Server, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2007-2137

Produtos afetados

Enterprise Portal Server
Ibm Tivoli Monitoring Express
Tivoli Universal Agent
Windows Os Monitoring Agent