CVE-2015-2019
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
IBM Tivoli Security Directory Server 6.0 before iFix 75, 6.1 before iFix 68, 6.2 before iFix 44, 6.3 before iFix 37, 6.3.1 before iFix 11, and 6.4 before iFix 2 does not prevent caching of documents retrieved in SSL sessions, which allows physically proximate attackers to obtain sensitive information by leveraging an unattended workstation.
IBM Tivoli Security Directory Server 6.0 en versiones anteriores a iFix 75, 6.1 en versiones anteriores a iFix 68, 6.2 en versiones anteriores a iFix 44, 6.3 en versiones anteriores a iFix 37, 6.3.1 en versiones anteriores a iFix 11 y 6.4 en versiones anteriores a iFix 2 no previene correctamente el almacenamiento en caché de documentos recuperados en sesiones SSL, lo que permite a atacantes fisicamente próximos obtener información sensible aprovechando un puesto de trabajo desatendido.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-02-19 CVE Reserved
- 2015-06-28 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-17: DEPRECATED: Code
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/75437 | Third Party Advisory | |
http://www.securitytracker.com/id/1032734 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg21960659 | 2016-12-30 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ibm Search vendor "Ibm" | Tivoli Directory Server Search vendor "Ibm" for product "Tivoli Directory Server" | 6.0 Search vendor "Ibm" for product "Tivoli Directory Server" and version "6.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Directory Server Search vendor "Ibm" for product "Tivoli Directory Server" | 6.1.0 Search vendor "Ibm" for product "Tivoli Directory Server" and version "6.1.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Directory Server Search vendor "Ibm" for product "Tivoli Directory Server" | 6.2.0.0 Search vendor "Ibm" for product "Tivoli Directory Server" and version "6.2.0.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Directory Server Search vendor "Ibm" for product "Tivoli Directory Server" | 6.3.0.0 Search vendor "Ibm" for product "Tivoli Directory Server" and version "6.3.0.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Directory Server Search vendor "Ibm" for product "Tivoli Directory Server" | 6.3.1.0 Search vendor "Ibm" for product "Tivoli Directory Server" and version "6.3.1.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Directory Server Search vendor "Ibm" for product "Tivoli Directory Server" | 6.4.0 Search vendor "Ibm" for product "Tivoli Directory Server" and version "6.4.0" | - |
Affected
|