Directory Traversal Vulnerability in IBM Director CIM Server
CVE-2009-0880

Currently unrated

Key Information:

Vendor
IBM
Status
Vendor
CVE Published:
12 March 2009

Summary

A directory traversal vulnerability exists in the CIM server of IBM Director leading to potential security risks. This flaw allows remote attackers to exploit the vulnerability by using a crafted URI with a '..' sequence in a /CIMListener/ M-POST request. If successfully executed, the attacker could load and execute arbitrary local DLLs, posing a significant risk to the integrity of the system. Users of affected versions should upgrade to ensure their systems are secure against these kinds of attacks.

References

EPSS Score

63% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.