CVE-2010-3059
Last modified
CVE-2010-3059 is a vulnerability of currently unknown severity. Buffer overflow in the message-protocol implementation in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, allows remote attackers to read and modify data, and possibly have other impact, via an unspecified command.. EPSS estimates a 1.53% chance of exploitation in the next 30 days.
Description
Buffer overflow in the message-protocol implementation in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, allows remote attackers to read and modify data, and possibly have other impact, via an unspecified command.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Tivoli Storage Manager Fastback | 5.5.0 |
| Ibm | Tivoli Storage Manager Fastback | 5.5.1 |
| Ibm | Tivoli Storage Manager Fastback | 5.5.2 |
| Ibm | Tivoli Storage Manager Fastback | 5.5.2.0 |
| Ibm | Tivoli Storage Manager Fastback | 5.5.3.0 |
| Ibm | Tivoli Storage Manager Fastback | 5.5.4.0 |
| Ibm | Tivoli Storage Manager Fastback | 5.5.5.0 |
| Ibm | Tivoli Storage Manager Fastback | 5.5.6.0 |
| Ibm | Tivoli Storage Manager Fastback | 6.1.0.0 |
References
- http://secunia.com/advisories/41044Vendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21443820Vendor Advisory
- http://secunia.com/advisories/41044Vendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21443820Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2010-3059?
How severe is CVE-2010-3059?
How do I fix CVE-2010-3059?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2010
- CVE-2010-3050Cisco IOS before 12.2(33)SXI allows remote authenticated use…
- CVE-2010-3053bdf/bdflib.c in FreeType before 2.4.2 allows remote attacker…
- CVE-2010-3054Unspecified vulnerability in FreeType 2.3.9, and other versi…
- CVE-2010-3055The configuration setup script (aka scripts/setup.php) in ph…
- CVE-2010-3056Multiple cross-site scripting (XSS) vulnerabilities in phpMy…
- CVE-2010-3058The Mount service in IBM Tivoli Storage Manager (TSM) FastBa…
- CVE-2010-3060Unspecified vulnerability in the message-protocol implementa…
- CVE-2010-3061Unspecified vulnerability in the message-protocol implementa…
- CVE-2010-3062mysqlnd_wireprotocol.c in the Mysqlnd extension in PHP 5.3 t…
- CVE-2010-3063The php_mysqlnd_read_error_from_line function in the Mysqlnd…
- CVE-2010-3064Stack-based buffer overflow in the php_mysqlnd_auth_write fu…
- CVE-2010-3065The default session serializer in PHP 5.2 through 5.2.13 and…
Are you affected by CVE-2010-3059?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
