Vulnerabilities > IBM > Spectrum Protect Backup Archive Client > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-12-13 CVE-2021-39048 Out-of-bounds Write vulnerability in IBM products
IBM Spectrum Protect Client 7.1 and 8.1 is vulnerable to a stack based buffer overflow, caused by improper bounds checking.
local
low complexity
ibm CWE-787
5.5
2019-11-25 CVE-2019-4406 Unspecified vulnerability in IBM Spectrum Protect Backup-Archive Client
IBM Spectrum Protect Backup-Archive Client 7.1 and 8.1 may be vulnerable to a denial of service attack due to a timing issue between client and server TCP/IP communications.
local
low complexity
ibm
4.4
2019-04-08 CVE-2018-1882 Cleartext Storage of Sensitive Information vulnerability in IBM products
In a certain atypical IBM Spectrum Protect 7.1 and 8.1 configurations, the node password could be displayed in plain text in the IBM Spectrum Protect client trace file.
local
high complexity
ibm CWE-312
4.7
2019-04-08 CVE-2018-1853 Improper Restriction of Rendered UI Layers or Frames vulnerability in IBM Spectrum Protect Backup-Archive Client
IBM Tivoli Storage Manager (IBM Spectrum Protect 7.1 and 8.1) could allow a remote attacker to hijack the clicking action of the victim.
network
low complexity
ibm CWE-1021
6.1
2019-04-08 CVE-2018-1787 Incorrect Permission Assignment for Critical Resource vulnerability in IBM products
IBM Spectrum Protect 7.1 and 8.1 is affected by a password exposure vulnerability caused by insecure file permissions.
local
low complexity
ibm CWE-732
5.5