PT-2002-2018 · Ibm · Ibm Tivoli Management Framework

Published

2002-08-31

·

Updated

2008-09-05

·

CVE-2002-1012

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: Tivoli Management Framework (TMF) ManagedNode versions 3.6.x through 3.7.1
Description: A buffer overflow issue in the web server of the affected software allows remote attackers to cause a denial of service or potentially execute arbitrary code by sending a long HTTP GET request.
Recommendations: For versions 3.6.x through 3.7.1, consider restricting access to the web server until a fix is available. As a temporary workaround, limiting the length of HTTP GET requests may help mitigate the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-1012

Affected Products

Ibm Tivoli Management Framework