CVE Vulnerabilities

CVE-2015-4927

Published: Nov 04, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The Reporting and Monitoring component in Tivoli Monitoring in IBM Tivoli Storage Manager 6.3 before 6.3.6 and 7.1 before 7.1.3 on Linux and AIX uses world-writable permissions for unspecified files, which allows local users to gain privileges by writing to a file.

Affected Software

NameVendorStart VersionEnd Version
Tivoli_storage_managerIbm6.3.3 (including)6.3.3 (including)
Tivoli_storage_managerIbm6.3.4 (including)6.3.4 (including)
Tivoli_storage_managerIbm6.3.5 (including)6.3.5 (including)
Tivoli_storage_managerIbm6.3.5.1 (including)6.3.5.1 (including)
Tivoli_storage_managerIbm7.1 (including)7.1 (including)
Tivoli_storage_managerIbm7.1.1 (including)7.1.1 (including)
Tivoli_storage_managerIbm7.1.2 (including)7.1.2 (including)

References