Vulnerabilities > IBM > Spectrum Protect Backup Archive Client

DATE CVE VULNERABILITY TITLE RISK
2023-06-22 CVE-2023-28956 Unspecified vulnerability in IBM Spectrum Protect Backup-Archive Client
IBM Spectrum Protect Backup-Archive Client 8.1.0.0 through 8.1.17.2 may allow a local user to escalate their privileges due to improper access controls.
local
low complexity
ibm
7.8
2021-12-13 CVE-2021-39048 Out-of-bounds Write vulnerability in IBM products
IBM Spectrum Protect Client 7.1 and 8.1 is vulnerable to a stack based buffer overflow, caused by improper bounds checking.
local
low complexity
ibm CWE-787
5.5
2021-04-26 CVE-2021-20532 Incorrect Default Permissions vulnerability in IBM products
IBM Spectrum Protect Client 8.1.0.0 through 8.1.11.0 could allow a local user to escalate their privileges to take full control of the system due to insecure directory permissions.
local
low complexity
ibm CWE-276
7.2
2019-11-25 CVE-2019-4406 Improper Input Validation vulnerability in IBM Spectrum Protect Backup-Archive Client
IBM Spectrum Protect Backup-Archive Client 7.1 and 8.1 may be vulnerable to a denial of service attack due to a timing issue between client and server TCP/IP communications.
local
low complexity
ibm CWE-20
2.1
2019-04-08 CVE-2018-1882 Cleartext Storage of Sensitive Information vulnerability in IBM products
In a certain atypical IBM Spectrum Protect 7.1 and 8.1 configurations, the node password could be displayed in plain text in the IBM Spectrum Protect client trace file.
local
ibm CWE-312
1.9
2019-04-08 CVE-2018-1853 Improper Restriction of Rendered UI Layers or Frames vulnerability in IBM Spectrum Protect Backup-Archive Client
IBM Tivoli Storage Manager (IBM Spectrum Protect 7.1 and 8.1) could allow a remote attacker to hijack the clicking action of the victim.
network
ibm CWE-1021
4.3
2019-04-08 CVE-2018-1787 Incorrect Permission Assignment for Critical Resource vulnerability in IBM products
IBM Spectrum Protect 7.1 and 8.1 is affected by a password exposure vulnerability caused by insecure file permissions.
local
low complexity
ibm microsoft CWE-732
2.1