Vulnerability Database

289,871

Total vulnerabilities in the database

CVE-2015-1977

Directory traversal vulnerability in the Web Administration tool in IBM Tivoli Directory Server (ITDS) before 6.1.0.74-ISS-ISDS-IF0074, 6.2.x before 6.2.0.50-ISS-ISDS-IF0050, and 6.3.x before 6.3.0.43-ISS-ISDS-IF0043 and IBM Security Directory Server (ISDS) before 6.3.1.18-ISS-ISDS-IF0018 and 6.4.x before 6.4.0.9-ISS-ISDS-IF0009 allows remote attackers to read arbitrary files via a .. (dot dot) in a URL.

  • Published: Jul 15, 2016
  • Updated: Apr 13, 2023
  • CVE: CVE-2015-1977
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.5
  • AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:P/I:N/A:N

CWEs:

Software From Fixed in
ibm / tivoli_directory_server 6.2.0.3 6.2.0.3.x
ibm / tivoli_directory_server 6.2.0.7 6.2.0.7.x
ibm / tivoli_directory_server 6.2.0.6 6.2.0.6.x
ibm / tivoli_directory_server 6.2.0.44 6.2.0.44.x
ibm / tivoli_directory_server 6.2.0.36 6.2.0.36.x
ibm / tivoli_directory_server 6.2.0.35 6.2.0.35.x
ibm / tivoli_directory_server 6.2.0.8 6.2.0.8.x
ibm / tivoli_directory_server 6.2.0.29 6.2.0.29.x
ibm / tivoli_directory_server 6.2.0.21 6.2.0.21.x
ibm / tivoli_directory_server 6.2.0.12 6.2.0.12.x
ibm / tivoli_directory_server 6.2.0.23 6.2.0.23.x
ibm / tivoli_directory_server 6.2.0.31 6.2.0.31.x
ibm / tivoli_directory_server 6.2.0.5 6.2.0.5.x
ibm / tivoli_directory_server 6.2.0.10 6.2.0.10.x
ibm / tivoli_directory_server 6.2.0.11 6.2.0.11.x
ibm / tivoli_directory_server 6.2.0.45 6.2.0.45.x
ibm / tivoli_directory_server 6.2.0.39 6.2.0.39.x
ibm / tivoli_directory_server 6.2.0.40 6.2.0.40.x
ibm / tivoli_directory_server 6.2.0.24 6.2.0.24.x
ibm / tivoli_directory_server 6.2.0.14 6.2.0.14.x
ibm / tivoli_directory_server 6.2.0.25 6.2.0.25.x
ibm / tivoli_directory_server 6.2.0.19 6.2.0.19.x
ibm / tivoli_directory_server 6.2.0.42 6.2.0.42.x
ibm / tivoli_directory_server 6.2.0.34 6.2.0.34.x
ibm / tivoli_directory_server 6.2.0.41 6.2.0.41.x
ibm / tivoli_directory_server 6.2.0.30 6.2.0.30.x
ibm / tivoli_directory_server 6.2.0.13 6.2.0.13.x
ibm / tivoli_directory_server 6.2.0.49 6.2.0.49.x
ibm / tivoli_directory_server 6.2.0.48 6.2.0.48.x
ibm / tivoli_directory_server 6.2.0.4 6.2.0.4.x
ibm / tivoli_directory_server 6.2.0.43 6.2.0.43.x
ibm / tivoli_directory_server 6.2.0.26 6.2.0.26.x
ibm / tivoli_directory_server 6.2.0.32 6.2.0.32.x
ibm / tivoli_directory_server 6.2.0.37 6.2.0.37.x
ibm / tivoli_directory_server 6.2.0 6.2.0.x
ibm / tivoli_directory_server 6.2.0.0 6.2.0.0.x
ibm / tivoli_directory_server 6.2.0.1 6.2.0.1.x
ibm / tivoli_directory_server 6.2.0.33 6.2.0.33.x
ibm / tivoli_directory_server 6.2.0.27 6.2.0.27.x
ibm / tivoli_directory_server 6.2.0.38 6.2.0.38.x
ibm / tivoli_directory_server 6.2.0.2 6.2.0.2.x
ibm / tivoli_directory_server 6.2.0.20 6.2.0.20.x
ibm / tivoli_directory_server 6.2.0.22 6.2.0.22.x
ibm / tivoli_directory_server 6.2.0.15 6.2.0.15.x
ibm / tivoli_directory_server 6.2.0.46 6.2.0.46.x
ibm / tivoli_directory_server 6.2.0.47 6.2.0.47.x
ibm / tivoli_directory_server 6.3.0.39 6.3.0.39.x
ibm / tivoli_directory_server 6.3.0.8 6.3.0.8.x
ibm / tivoli_directory_server 6.3.0.38 6.3.0.38.x
ibm / tivoli_directory_server 6.3.0.27 6.3.0.27.x
ibm / tivoli_directory_server 6.3.0.21 6.3.0.21.x
ibm / tivoli_directory_server 6.3.0.32 6.3.0.32.x
ibm / tivoli_directory_server 6.3.0.29 6.3.0.29.x
ibm / tivoli_directory_server 6.3.0.40 6.3.0.40.x
ibm / tivoli_directory_server 6.3.0.23 6.3.0.23.x
ibm / tivoli_directory_server 6.3.0.34 6.3.0.34.x
ibm / tivoli_directory_server 6.3.1.9 6.3.1.9.x
ibm / tivoli_directory_server 6.3.0.41 6.3.0.41.x
ibm / tivoli_directory_server 6.3.1.8 6.3.1.8.x
ibm / tivoli_directory_server 6.3.0.25 6.3.0.25.x
ibm / tivoli_directory_server 6.3.0.9 6.3.0.9.x
ibm / tivoli_directory_server 6.3.0.24 6.3.0.24.x
ibm / tivoli_directory_server 6.3.1.5 6.3.1.5.x
ibm / tivoli_directory_server 6.3.0.0 6.3.0.0.x
ibm / tivoli_directory_server 6.3.0.22 6.3.0.22.x
ibm / tivoli_directory_server 6.3.0.11 6.3.0.11.x
ibm / tivoli_directory_server 6.3.0.33 6.3.0.33.x
ibm / tivoli_directory_server 6.3.0.30 6.3.0.30.x
ibm / tivoli_directory_server 6.3.0.15 6.3.0.15.x
ibm / tivoli_directory_server 6.3.0.42 6.3.0.42.x
ibm / tivoli_directory_server 6.3.0.10 6.3.0.10.x
ibm / tivoli_directory_server 6.3.0.17 6.3.0.17.x
ibm / tivoli_directory_server 6.3.0.2 6.3.0.2.x
ibm / tivoli_directory_server 6.3.0.18 6.3.0.18.x
ibm / tivoli_directory_server 6.3.1.6 6.3.1.6.x
ibm / tivoli_directory_server 6.3.0.35 6.3.0.35.x
ibm / tivoli_directory_server 6.3.1.0 6.3.1.0.x
ibm / tivoli_directory_server 6.3.0.31 6.3.0.31.x
ibm / tivoli_directory_server 6.3.0.36 6.3.0.36.x
ibm / tivoli_directory_server 6.3.0.12 6.3.0.12.x
ibm / tivoli_directory_server 6.3.0.26 6.3.0.26.x
ibm / tivoli_directory_server 6.3.0 6.3.0.x
ibm / tivoli_directory_server 6.3.0.14 6.3.0.14.x
ibm / tivoli_directory_server 6.3.0.37 6.3.0.37.x
ibm / tivoli_directory_server 6.3.0.19 6.3.0.19.x
ibm / tivoli_directory_server 6.3.1.7 6.3.1.7.x
ibm / tivoli_directory_server 6.3.0.1 6.3.0.1.x
ibm / tivoli_directory_server 6.3.0.28 6.3.0.28.x
ibm / tivoli_directory_server 6.1.0.13 6.1.0.13.x
ibm / tivoli_directory_server 6.1.0.66 6.1.0.66.x
ibm / tivoli_directory_server 6.1.0.8 6.1.0.8.x
ibm / tivoli_directory_server 6.1.0.36 6.1.0.36.x
ibm / tivoli_directory_server 6.1.0.44 6.1.0.44.x
ibm / tivoli_directory_server 6.1.0.73 6.1.0.73.x
ibm / tivoli_directory_server 6.1.0.60 6.1.0.60.x
ibm / tivoli_directory_server 6.1.0.20 6.1.0.20.x
ibm / tivoli_directory_server 6.1.0.9 6.1.0.9.x
ibm / tivoli_directory_server 6.1.0.58 6.1.0.58.x
ibm / tivoli_directory_server 6.1.0.62 6.1.0.62.x
ibm / tivoli_directory_server 6.1.0.72 6.1.0.72.x
ibm / tivoli_directory_server 6.1.0.59 6.1.0.59.x
ibm / tivoli_directory_server 6.1.0.35 6.1.0.35.x
ibm / tivoli_directory_server 6.1.0.23 6.1.0.23.x
ibm / tivoli_directory_server 6.1.0.22 6.1.0.22.x
ibm / tivoli_directory_server 6.1.0.32 6.1.0.32.x
ibm / tivoli_directory_server 6.1.0.71 6.1.0.71.x
ibm / tivoli_directory_server 6.1.0.25 6.1.0.25.x
ibm / tivoli_directory_server 6.1.0.3 6.1.0.3.x
ibm / tivoli_directory_server 6.1.0.65 6.1.0.65.x
ibm / tivoli_directory_server 6.1.0.38 6.1.0.38.x
ibm / tivoli_directory_server 6.1.0.42 6.1.0.42.x
ibm / tivoli_directory_server 6.1.0.14 6.1.0.14.x
ibm / tivoli_directory_server 6.1.0.19 6.1.0.19.x
ibm / tivoli_directory_server 6.1.0.17 6.1.0.17.x
ibm / tivoli_directory_server 6.1.0.1 6.1.0.1.x
ibm / tivoli_directory_server 6.1.0.11 6.1.0.11.x
ibm / tivoli_directory_server 6.1.0.6 6.1.0.6.x
ibm / tivoli_directory_server 6.1.0.0 6.1.0.0.x
ibm / tivoli_directory_server 6.1.0.51 6.1.0.51.x
ibm / tivoli_directory_server 6.1.0.64 6.1.0.64.x
ibm / tivoli_directory_server 6.1.0.48 6.1.0.48.x
ibm / tivoli_directory_server 6.1.0.63 6.1.0.63.x
ibm / tivoli_directory_server 6.1.0.39 6.1.0.39.x
ibm / tivoli_directory_server 6.1.0.10 6.1.0.10.x
ibm / tivoli_directory_server 6.1.0.61 6.1.0.61.x
ibm / tivoli_directory_server 6.1.0.41 6.1.0.41.x
ibm / tivoli_directory_server 6.1.0.56 6.1.0.56.x
ibm / tivoli_directory_server 6.1.0.68 6.1.0.68.x
ibm / tivoli_directory_server 6.1.0.27 6.1.0.27.x
ibm / tivoli_directory_server 6.1.0.70 6.1.0.70.x
ibm / tivoli_directory_server 6.1.0.43 6.1.0.43.x
ibm / tivoli_directory_server 6.1.0.46 6.1.0.46.x
ibm / tivoli_directory_server 6.1.0.33 6.1.0.33.x
ibm / tivoli_directory_server 6.1.0.2 6.1.0.2.x
ibm / tivoli_directory_server 6.1.0.52 6.1.0.52.x
ibm / tivoli_directory_server 6.1.0.26 6.1.0.26.x
ibm / tivoli_directory_server 6.1.0.24 6.1.0.24.x
ibm / tivoli_directory_server 6.1.0.57 6.1.0.57.x
ibm / tivoli_directory_server 6.1.0 6.1.0.x
ibm / tivoli_directory_server 6.1.0.5 6.1.0.5.x
ibm / tivoli_directory_server 6.1.0.54 6.1.0.54.x
ibm / tivoli_directory_server 6.1.0.47 6.1.0.47.x
ibm / tivoli_directory_server 6.1.0.30 6.1.0.30.x
ibm / tivoli_directory_server 6.1.0.21 6.1.0.21.x
ibm / tivoli_directory_server 6.1.0.18 6.1.0.18.x
ibm / tivoli_directory_server 6.1.0.50 6.1.0.50.x
ibm / tivoli_directory_server 6.1.0.4 6.1.0.4.x
ibm / tivoli_directory_server 6.1.0.37 6.1.0.37.x
ibm / tivoli_directory_server 6.1.0.40 6.1.0.40.x
ibm / tivoli_directory_server 6.1.0.53 6.1.0.53.x
ibm / tivoli_directory_server 6.1.0.12 6.1.0.12.x
ibm / tivoli_directory_server 6.1.0.15 6.1.0.15.x
ibm / tivoli_directory_server 6.1.0.67 6.1.0.67.x
ibm / tivoli_directory_server 6.1.0.28 6.1.0.28.x
ibm / tivoli_directory_server 6.1.0.29 6.1.0.29.x
ibm / tivoli_directory_server 6.1.0.49 6.1.0.49.x
ibm / tivoli_directory_server 6.1.0.7 6.1.0.7.x
ibm / tivoli_directory_server 6.1.0.69 6.1.0.69.x
ibm / tivoli_directory_server 6.1.0.34 6.1.0.34.x
ibm / tivoli_directory_server 6.1.0.55 6.1.0.55.x
ibm / tivoli_directory_server 6.1.0.31 6.1.0.31.x
ibm / tivoli_directory_server 6.1.0.45 6.1.0.45.x
ibm / security_directory_server 6.4.0.1 6.4.0.1.x
ibm / security_directory_server 6.4.0.3 6.4.0.3.x
ibm / security_directory_server 6.4.0.8 6.4.0.8.x
ibm / security_directory_server 6.4.0.7 6.4.0.7.x
ibm / security_directory_server 6.4.0.0 6.4.0.0.x
ibm / security_directory_server 6.4.0.2 6.4.0.2.x
ibm / security_directory_server 6.4.0 6.4.0.x
ibm / security_directory_server 6.4.0.6 6.4.0.6.x
ibm / security_directory_server 6.4.0.4 6.4.0.4.x
ibm / security_directory_server 6.4.0.5 6.4.0.5.x
ibm / security_directory_server 6.3.1.5 6.3.1.5.x
ibm / security_directory_server 6.3.1.9 6.3.1.9.x
ibm / security_directory_server 6.3.1.2 6.3.1.2.x
ibm / security_directory_server 6.3.1.7 6.3.1.7.x
ibm / security_directory_server 6.3.1.11 6.3.1.11.x
ibm / security_directory_server 6.3.1.15 6.3.1.15.x
ibm / security_directory_server 6.3.1.10 6.3.1.10.x
ibm / security_directory_server 6.3.1.0 6.3.1.0.x
ibm / security_directory_server 6.3.1.12 6.3.1.12.x
ibm / security_directory_server 6.3.1.3 6.3.1.3.x
ibm / security_directory_server 6.3.1.6 6.3.1.6.x
ibm / security_directory_server 6.3.1.13 6.3.1.13.x
ibm / security_directory_server 6.3.1 6.3.1.x
ibm / security_directory_server 6.3.1.8 6.3.1.8.x
ibm / security_directory_server 6.3.1.4 6.3.1.4.x
ibm / security_directory_server 6.3.1.14 6.3.1.14.x
ibm / security_directory_server 6.3.1.17 6.3.1.17.x
ibm / security_directory_server 6.3.1.16 6.3.1.16.x
ibm / security_directory_server 6.3.1.1 6.3.1.1.x