CVE-2015-1959
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
IBM Tivoli Security Directory Server 6.0 before iFix 75, 6.1 before iFix 68, 6.2 before iFix 44, 6.3 before iFix 37, 6.3.1 before iFix 11, and 6.4 before iFix 2 does not properly restrict encrypted files, which allows local users to obtain sensitive information or possibly have unspecified other impact via a (1) download or (2) upload action.
IBM Tivoli Security Directory Server 6.0 anterior a iFix 75, 6.1 anterior a iFix 68, 6.2 anterior a iFix 44, 6.3 anterior a iFix 37, 6.3.1 anterior a iFix 11, y 6.4 anterior a iFix 2 no restringe correctamente los ficheros codificados, lo que permite a usuarios locales obtener información sensible o posiblemente tener otro impacto no especificado a través de una acción (1) de descarga o (2) subida.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-02-19 CVE Reserved
- 2015-06-28 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-284: Improper Access Control
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/75442 | Vdb Entry | |
http://www.securitytracker.com/id/1032734 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg21960659 | 2016-12-28 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ibm Search vendor "Ibm" | Tivoli Directory Server Search vendor "Ibm" for product "Tivoli Directory Server" | 6.0 Search vendor "Ibm" for product "Tivoli Directory Server" and version "6.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Directory Server Search vendor "Ibm" for product "Tivoli Directory Server" | 6.1.0 Search vendor "Ibm" for product "Tivoli Directory Server" and version "6.1.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Directory Server Search vendor "Ibm" for product "Tivoli Directory Server" | 6.2.0.0 Search vendor "Ibm" for product "Tivoli Directory Server" and version "6.2.0.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Directory Server Search vendor "Ibm" for product "Tivoli Directory Server" | 6.3.0.0 Search vendor "Ibm" for product "Tivoli Directory Server" and version "6.3.0.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Directory Server Search vendor "Ibm" for product "Tivoli Directory Server" | 6.3.1.0 Search vendor "Ibm" for product "Tivoli Directory Server" and version "6.3.1.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Directory Server Search vendor "Ibm" for product "Tivoli Directory Server" | 6.4.0 Search vendor "Ibm" for product "Tivoli Directory Server" and version "6.4.0" | - |
Affected
|