Weak Permissions in IBM Tivoli Continuous Data Protection for Files Allows Local File Manipulation
CVE-2007-5819
Currently unrated
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 5 November 2007
What is CVE-2007-5819?
The IBM Tivoli Continuous Data Protection for Files version 3.1.0 has been identified to use inadequate permissions for its Central Admin Global download directory. This flaw allows local users to write arbitrary files into this directory, which could be exploited to manipulate the CDP client update process. This vulnerability underscores the importance of proper permission settings in software applications to prevent unauthorized file access and ensure data integrity.