IBM / Spectrum Protect
23 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2023-28956 | IBM Spectrum Protect Backup-Archive Client privilege escalation | HIGH | 8.4 | Jun 22, 2023 |
| CVE-2023-27863 | IBM Spectrum Protect Plus Server information disclosure | MEDIUM | 4.9 | May 12, 2023 |
| CVE-2022-22484 | IBM Spectrum Protect Operations Center 8.1.12 and 8.1.13 could allow a local attacker to obtain sensitive information, caused by plain text user account passwo… | MEDIUM | 5.5 | May 17, 2022 |
| CVE-2022-22394 | The IBM Spectrum Protect 8.1.14.000 server could allow a remote attacker to bypass security restrictions, caused by improper enforcement of access controls. By… | HIGH | 8.8 | Mar 21, 2022 |
| CVE-2021-39048 | IBM Spectrum Protect Client 7.1 and 8.1 is vulnerable to a stack based buffer overflow, caused by improper bounds checking. A local attacker could exploit this… | MEDIUM | 5.5 | Dec 13, 2021 |
| CVE-2021-20491 | IBM Spectrum Protect Server 7.1 and 8.1 is subject to a stack-based buffer overflow caused by improper bounds checking during the parsing of commands. By issui… | MEDIUM | 4.4 | Apr 16, 2021 |
| CVE-2020-5017 | IBM Spectrum Protect Plus 10.1.0 through 10.1.6 may allow a local user to obtain access to information beyond their intended role and permissions. IBM X-Force… | MEDIUM | 5.5 | Jan 8, 2021 |
| CVE-2020-4559 | IBM Spectrum Protect 7.1 and 8.1 could allow an attacker to cause a denial of service due ti improper validation of user-supplied input. IBM X-Force ID: 183613. | HIGH | 7.5 | Aug 28, 2020 |
| CVE-2020-4415 | IBM Spectrum Protect 7.1 and 8.1 server is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. This could allow a remote attacker… | CRITICAL | 9.8 | Apr 23, 2020 |
| CVE-2020-4222 | IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attacker to execute arbitrary code on the system. By using a specially crafted HTTP command, a… | CRITICAL | 9.8 | Feb 24, 2020 |
| CVE-2020-4213 | IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attacker to execute arbitrary code on the system. By using a specially crafted HTTP command, a… | CRITICAL | 9.8 | Feb 24, 2020 |
| CVE-2020-4212 | IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attacker to execute arbitrary code on the system. By using a specially crafted HTTP command, a… | CRITICAL | 9.8 | Feb 24, 2020 |
| CVE-2020-4211 | IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attacker to execute arbitrary code on the system. By using a specially crafted HTTP command, a… | CRITICAL | 9.8 | Feb 24, 2020 |
| CVE-2020-4210 | IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attacker to execute arbitrary code on the system. By using a specially crafted HTTP command, a… | CRITICAL | 9.8 | Feb 24, 2020 |
| CVE-2018-2025 | IBM Spectrum Protect Backup-Archive Client and IBM Spectrum Protect for Virtual Environments 7.1 and 8.1 creates directories/files in the CIT sub directory tha… | MEDIUM | 4.4 | Nov 25, 2019 |
| CVE-2019-4267 | The IBM Spectrum Protect 7.1 and 8.1 Backup-Archive Client is vulnerable to a buffer overflow. This could allow execution of arbitrary code on the local system… | HIGH | 7.8 | Jul 22, 2019 |
| CVE-2019-4236 | A IBM Spectrum Protect 7.l client backup or archive operation running for an HP-UX VxFS object is silently skipping Access Control List (ACL) entries from back… | MEDIUM | 4.4 | Jul 22, 2019 |
| CVE-2019-4140 | IBM Tivoli Storage Manager Server (IBM Spectrum Protect 7.1 and 8.1) could allow a local user to replace existing databases by restoring old data. IBM X-Force… | HIGH | 7.1 | Jul 2, 2019 |
| CVE-2019-4129 | IBM Spectrum Protect Operations Center 7.1 and 8.1 could allow a remote attacker to obtain sensitive information, caused by an error message containing a stack… | MEDIUM | 5.3 | Jul 2, 2019 |
| CVE-2019-4088 | IBM Spectrum Protect Servers 7.1 and 8.1 and Storage Agents could allow a local attacker to gain elevated privileges on the system, caused by loading a special… | HIGH | 7.8 | Jul 2, 2019 |
| CVE-2019-4087 | IBM Spectrum Protect Servers 7.1 and 8.1 and Storage Agents are vulnerable to a stack-based buffer overflow, caused by improper bounds checking by servers and… | CRITICAL | 9.8 | Jul 2, 2019 |
| CVE-2018-1882 | In a certain atypical IBM Spectrum Protect 7.1 and 8.1 configurations, the node password could be displayed in plain text in the IBM Spectrum Protect client tr… | MEDIUM | 4.7 | Apr 8, 2019 |
| CVE-2018-1853 | IBM Tivoli Storage Manager (IBM Spectrum Protect 7.1 and 8.1) could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim… | MEDIUM | 6.1 | Apr 8, 2019 |
| CVE-2018-1787 | IBM Spectrum Protect 7.1 and 8.1 is affected by a password exposure vulnerability caused by insecure file permissions. IBM X-Force ID: 148872. | MEDIUM | 5.5 | Apr 8, 2019 |
| CVE-2019-4093 | IBM Tivoli Storage Manager (IBM Spectrum Protect 8.1.7) could allow a user to restore files and directories using IBM Spectrum Prootect Client Web User Interfa… | MEDIUM | 4.4 | Apr 2, 2019 |
Showing 1 to 23 of 23 CVEs