9.3
CVSSv2

CVE-2009-3853

Published: 04/11/2009 Updated: 10/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in the client acceptor daemon (CAD) scheduler in the client in IBM Tivoli Storage Manager (TSM) 5.3 prior to 5.3.6.7, 5.4 prior to 5.4.3, 5.5 prior to 5.5.2.2, and 6.1 prior to 6.1.0.2, and TSM Express 5.3.3.0 up to and including 5.3.6.6, allows remote malicious users to execute arbitrary code via crafted data in a TCP packet.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm tivoli storage manager 5.3.0

ibm tivoli storage manager 5.3.1

ibm tivoli storage manager 5.3

ibm tivoli storage manager 5.3.6.1

ibm tivoli storage manager 5.3.6.6

ibm tivoli storage manager 5.4.1

ibm tivoli storage manager 5.4.2

ibm tivoli storage manager 5.3.6

ibm tivoli storage manager 5.3.2

ibm tivoli storage manager 5.3.3

ibm tivoli storage manager 5.3.6.2

ibm tivoli storage manager 5.3.6.3

ibm tivoli storage manager 5.5.1

ibm tivoli storage manager 5.5.2

ibm tivoli storage manager 5.3.5.1

ibm tivoli storage manager 5.3.2.4

ibm tivoli storage manager 5.5.0

ibm tivoli storage manager 5.3.6.5

ibm tivoli storage manager 5.3.4

ibm tivoli storage manager 5.3.5

ibm tivoli storage manager 5.2.5.3

ibm tivoli storage manager 5.3.6.4

ibm tivoli storage manager 5.4.0

ibm tivoli storage manager 6.1.0

Exploits

## # $Id: ibm_tsm_cad_pingrb 9262 2010-05-09 17:45:00Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' class ...