T
he server in IBM Tivoli Storage Manager (TSM) 5.x and 6.x before 6.3.5.10 and 7.x before 7.1.1.100 allows remote attackers to bypass intended access restrictions and replace file backups by using a certain backup option in conjunction with a filename that matches a previously used filename.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 02:10
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://www-01.ibm.com/support/docview.wss?uid=swg1IT04884 - Vendor Advisory | |
| References | () http://www-01.ibm.com/support/docview.wss?uid=swg21686874 - Vendor Advisory | |
| References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/95444 - |
Information
Published : 2014-11-18 23:59
Updated : 2025-04-12 10:46
NVD link : CVE-2014-4817
Mitre link : CVE-2014-4817
CVE.ORG link : CVE-2014-4817
JSON object : View
Products Affected
CWE
CWE-264
Permissions, Privileges, and Access Controls