The CIM server in IBM Director prior to 5.20.3 Service Update 2 on Windows allows remote malicious users to cause a denial of service (daemon crash) via a long consumer name, as demonstrated by an M-POST request to a long /CIMListener/ URI.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ibm director 4.22 |
||
ibm director 4.21 |
||
ibm director 5.20.0 |
||
ibm director 5.10.3 |
||
ibm director 3.1.1 |
||
ibm director |
||
ibm director 5.10.1 |
||
ibm director 5.10.0 |
||
ibm director 5.10.2 |
||
ibm director 4.11 |
||
ibm director 5.20.2 |
||
ibm director 5.20.1 |
||
ibm director 4.20 |
||
ibm director 4.12 |
||
ibm director 4.10 |