PT-2014-6136 · Ibm · Ibm Tivoli Storage Manager

Published

2014-11-18

·

Updated

2017-08-29

·

CVE-2014-4817

CVSS v2.0

2.1

Low

VectorAV:L/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions IBM Tivoli Storage Manager (TSM) versions 5.x through 6.x before 6.3.5.10 IBM Tivoli Storage Manager (TSM) versions 7.x before 7.1.1.100
Description The issue allows remote attackers to bypass intended access restrictions and replace file backups by using a certain backup option in conjunction with a filename that matches a previously used filename.
Recommendations For versions 5.x through 6.x before 6.3.5.10, update to version 6.3.5.10 or later. For versions 7.x before 7.1.1.100, update to version 7.1.1.100 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-4817

Affected Products

Ibm Tivoli Storage Manager