HIGH
The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, which allows remote authenticated users to bypass file permissions on Tivoli Endpoint Configuration data files via an unspecified manipulation of log files
Published Mar 15, 2006
9.0
HIGHCVSS 2.0
EPSS 2.13%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.