The Vigil@nce team watches public vulnerabilities impacting your computers, and then offers security solutions, a vigilance database and tools to fix them.

Computer vulnerabilities of Spectrum Protect Plus

IBM Tivoli Storage Manager: access to data
A local attacker can access to IBM Tivoli Storage Manager, in order to obtain sensitive information or to alter information...
1657726, BID-64146, CVE-2012-5944, IC82487, VIGILANCE-VUL-13864
IBM Tivoli Storage Manager: buffer overflow of dsmtca
An attacker can generate a buffer overflow in dsmtca of IBM Tivoli Storage Manager, in order to trigger a denial of service, and possibly to elevate his privileges...
1651120, CVE-2013-2964, VIGILANCE-VUL-13514
IBM WebSphere AS 7.0: multiple vulnerabilities
An attacker can use several vulnerabilities of IBM WebSphere AS 7.0...
1671636, BID-57513, BID-59247, BID-59248, BID-59250, BID-59251, BID-59650, BID-61937, BID-61940, BID-61941, CVE-2013-0169, CVE-2013-0462, CVE-2013-0482, CVE-2013-0541, CVE-2013-0542, CVE-2013-0543, CVE-2013-0544, CVE-2013-1768, CVE-2013-2967, CVE-2013-2976, CVE-2013-3029, PM74909, PM75582, PM76582, PM76886, PM78614, PM79937, PM79992, PM81846, PM82468, PM85211, PM86780, PM86786, PM86788, PM86791, PM88746, swg21640799, swg24034966, VIGILANCE-VUL-13007
IBM Eclipse Help System: Cross Site Scripting via iehs.war
An attacker can use iehs.war to generate a Cross Site Scripting in several IBM products, in order to execute JavaScript code in the context of the victim's web browser...
BID-54051, CERTA-2012-AVI-391, CERTA-2012-AVI-521, CERTA-2012-AVI-742, CVE-2012-2159-ERROR, CVE-2012-2161, PM62795, swg21596690, swg21612193, swg21620352, swg27022958, swg27036319, VIGILANCE-VUL-11687
TLS, DTLS: information disclosure in CBC mode, Lucky 13
An attacker can inject wrongly encrypted messages in a TLS/DTLS session in mode CBC, and measure the delay before the error message reception, in order to progressively guess the clear content of the session...
1639354, 1643316, 1672363, BID-57736, BID-57774, BID-57776, BID-57777, BID-57778, BID-57780, BID-57781, c03710522, c03883001, CERTA-2013-AVI-099, CERTA-2013-AVI-109, CERTA-2013-AVI-339, CERTA-2013-AVI-454, CERTA-2013-AVI-543, CERTA-2013-AVI-657, CERTFR-2014-AVI-112, CERTFR-2014-AVI-244, CERTFR-2014-AVI-286, CERTFR-2019-AVI-311, CERTFR-2019-AVI-325, CVE-2013-0169, CVE-2013-1619, CVE-2013-1620, CVE-2013-1621, CVE-2013-1622-REJECT, CVE-2013-1623, CVE-2013-1624, DLA-1518-1, DSA-2621-1, DSA-2622-1, ESX400-201310001, ESX400-201310401-SG, ESX400-201310402-SG, ESX410-201307001, ESX410-201307401-SG, ESX410-201307403-SG, ESX410-201307404-SG, ESX410-201307405-SG, ESX410-201312001, ESX410-201312401-SG, ESX410-201312403-SG, ESXi410-201307001, ESXi410-201307401-SG, ESXi510-201401101-SG, FEDORA-2013-2110, FEDORA-2013-2128, FEDORA-2013-2764, FEDORA-2013-2793, FEDORA-2013-2813, FEDORA-2013-2834, FEDORA-2013-2892, FEDORA-2013-2929, FEDORA-2013-2984, FEDORA-2013-3079, FEDORA-2013-4403, FreeBSD-SA-13:03.openssl, GNUTLS-SA-2013-1, HPSBUX02856, HPSBUX02909, IC90385, IC90395, IC90396, IC90397, IC90660, IC93077, JSA10575, JSA10580, JSA10759, JSA10939, JSA11023, Lucky 13, MDVSA-2013:014, MDVSA-2013:018, MDVSA-2013:019, MDVSA-2013:040, MDVSA-2013:050, MDVSA-2013:052, openSUSE-SU-2013:0336-1, openSUSE-SU-2013:0337-1, openSUSE-SU-2013:0339-1, openSUSE-SU-2013:0807-1, openSUSE-SU-2016:0640-1, RHSA-2013:0273-01, RHSA-2013:0274-01, RHSA-2013:0275-01, RHSA-2013:0531-01, RHSA-2013:0532-01, RHSA-2013:0587-01, RHSA-2013:0588-01, RHSA-2013:0636-01, RHSA-2013:0782-01, RHSA-2013:0783-01, RHSA-2013:0833-01, RHSA-2013:0834-02, RHSA-2013:0839-02, RHSA-2013:1135-01, RHSA-2013:1144-01, RHSA-2013:1181-01, RHSA-2013:1455-01, RHSA-2013:1456-01, RHSA-2014:0371-01, RHSA-2014:0372-01, RHSA-2014:0896-01, RHSA-2015:1009, SOL14190, SOL15630, SSA:2013-040-01, SSA:2013-042-01, SSA:2013-242-01, SSA:2013-242-03, SSA:2013-287-03, SSA-556833, SSRT101104, SSRT101289, SUSE-SU-2013:0328-1, SUSE-SU-2014:0320-1, SUSE-SU-2014:0322-1, swg21633669, swg21638270, swg21639354, swg21640169, VIGILANCE-VUL-12374, VMSA-2013-0006.1, VMSA-2013-0007.1, VMSA-2013-0009, VMSA-2013-0009.1, VMSA-2013-0009.2, VMSA-2013-0009.3, VMSA-2013-0015
IBM TSM: file access via Client Web GUI
An attacker can use a vulnerability of IBM TSM Client Web GUI, in order to access to server files...
BID-57738, CERTA-2013-AVI-095, CVE-2013-0472, IC87210, swg21624118, VIGILANCE-VUL-12367
IBM TSM: denial of service of Client Scheduler
When IBM TSM Client Scheduler is configured in mode "SCHEDMODE=PROMPTED", a remote attacker can disable it...
BID-57737, CERTA-2013-AVI-095, CVE-2013-0471, IC87331, swg21575735, swg21624135, VIGILANCE-VUL-12366
IBM Tivoli Storage Manager : accès illicite aux fichiers
An attacker can use two vulnerabilities of IBM Tivoli Storage Manager for Space Management, in order to access to unauthorized files...
BID-56985, CERTA-2012-AVI-751, CVE-2012-4859, CVE-2012-5954, swg21615292, VIGILANCE-VUL-12245
IBM GSKit: denial of service via Handshake
An attacker can inject a malicious packet during the Handshake of a TLS session, in order to stop applications linked to IBM GSKit...
1450666, 1672360, BID-54743, CERTA-2012-AVI-552, CERTA-2013-AVI-159, CVE-2012-2190, IC90385, IC90395, IC90396, IC90397, swg21609030, swg21620711, swg21626749, swg27014463.html, swg27022958, VIGILANCE-VUL-12038
IBM GSKit: denial of service via CBC/AEAD
An attacker can inject a malicious packet in a TLS session, in order to stop applications linked to IBM GSKit...
1450666, 1672362, BID-54743, CERTA-2012-AVI-552, CERTA-2013-AVI-159, CVE-2012-2191, IC87061, IC90385, IC90395, IC90396, IC90397, swg21609029, swg21614483, swg21626749, swg27014224, swg27014463.html, swg27022958, VIGILANCE-VUL-12037
Our database contains other pages. You can request a free trial to read them.

Display information about Spectrum Protect Plus: