CVE-2015-1975
Last modified
CVE-2015-1975 is a vulnerability of currently unknown severity. The web administration tool in IBM Tivoli Security Directory Server 6.0 before iFix 75, 6.1 before iFix 68, 6.2 before iFix 44, and 6.3 before iFix 37 and IBM Security Directory Server 6.3.1 before iFix 11 and 6.4 before iFix 2 allows local users to gain privileges via vectors related to argument injection. IBM X-Force ID: 103694.. EPSS estimates a 0.49% chance of exploitation in the next 30 days.
Description
The web administration tool in IBM Tivoli Security Directory Server 6.0 before iFix 75, 6.1 before iFix 68, 6.2 before iFix 44, and 6.3 before iFix 37 and IBM Security Directory Server 6.3.1 before iFix 11 and 6.4 before iFix 2 allows local users to gain privileges via vectors related to argument injection. IBM X-Force ID: 103694.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Tivoli Directory Server | 6.0 |
| Ibm | Tivoli Directory Server | 6.1.0 |
| Ibm | Tivoli Directory Server | 6.2.0.0 |
| Ibm | Tivoli Directory Server | 6.3.0.0 |
| Ibm | Tivoli Directory Server | 6.3.1.0 |
| Ibm | Tivoli Directory Server | 6.4.0 |
References
- http://www-01.ibm.com/support/docview.wss?uid=swg21960659Vendor Advisory
- http://www.securityfocus.com/bid/103717Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/103694VDB Entry, Vendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21960659Vendor Advisory
- http://www.securityfocus.com/bid/103717Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/103694VDB Entry, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2015-1975?
How severe is CVE-2015-1975?
How do I fix CVE-2015-1975?
Are you affected by CVE-2015-1975?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
