Total vulnerabilities in the database
Directory traversal vulnerability in the CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows remote attackers to load and execute arbitrary local DLL code via a .. (dot dot) in a /CIMListener/ URI in an M-POST request.
Software | From | Fixed in |
---|---|---|
ibm / director | - | 5.20.3.x |
ibm / director | 3.1.1 | 3.1.1.x |
ibm / director | 4.10 | 4.10.x |
ibm / director | 4.11 | 4.11.x |
ibm / director | 4.12 | 4.12.x |
ibm / director | 4.20 | 4.20.x |
ibm / director | 4.21 | 4.21.x |
ibm / director | 4.22 | 4.22.x |
ibm / director | 5.10.0 | 5.10.0.x |
ibm / director | 5.10.1 | 5.10.1.x |
ibm / director | 5.10.2 | 5.10.2.x |
ibm / director | 5.10.3 | 5.10.3.x |
ibm / director | 5.20.0 | 5.20.0.x |
ibm / director | 5.20.1 | 5.20.1.x |
ibm / director | 5.20.2 | 5.20.2.x |