Remote Code Execution Vulnerability in IBM Tivoli Security Directory Server
CVE-2015-1972

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
28 June 2015

Summary

IBM Tivoli Security Directory Server versions prior to specified iFixes are susceptible to a vulnerability that enables remote attackers to exploit crafted POST requests to expose sensitive error-log information. This exposure poses significant risks, as it may reveal critical details that could be used to facilitate further attacks.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.