Vulnerabilities > IBM > Tivoli Directory Server

DATE CVE VULNERABILITY TITLE RISK
2009-09-08 CVE-2009-3089 Denial-Of-Service vulnerability in IBM Tivoli Directory Server 6.0
IBM Tivoli Directory Server (TDS) 6.0 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via unspecified vectors, related to (1) the ibmslapd.exe daemon on Windows and (2) the ibmdiradm daemon in the administration server on Linux, as demonstrated by certain modules in VulnDisco Pack Professional 8.11, a different vulnerability than CVE-2006-0717.
network
low complexity
ibm
7.8
2009-09-08 CVE-2009-3088 Buffer Errors vulnerability in IBM Tivoli Directory Server 6.0
Heap-based buffer overflow in ibmdiradm in IBM Tivoli Directory Server (TDS) 6.0 on Linux allows remote attackers to have an unspecified impact via unknown vectors that trigger heap corruption, as demonstrated by a certain module in VulnDisco Pack Professional 8.11.
network
low complexity
linux ibm CWE-119
7.5
2008-06-30 CVE-2008-2943 Resource Management Errors vulnerability in IBM Tivoli Directory Server
Double free vulnerability in IBM Tivoli Directory Server (TDS) 6.1.0.0 through 6.1.0.15 allows remote authenticated administrators to cause a denial of service (ABEND) and possibly execute arbitrary code by using ldapadd to attempt to create a duplicate ibm-globalAdminGroup LDAP database entry.
network
ibm CWE-399
6.0
2006-02-15 CVE-2006-0717 LDAP Memory Corruption vulnerability in IBM Tivoli Directory Server 6.0
IBM Tivoli Directory Server 6.0 allows remote attackers to cause a denial of service (crash) via a crafted LDAP request, as demonstrated by test 2532 in the ProtoVer Sample LDAP test suite.
network
low complexity
ibm
5.0
2005-11-16 CVE-2005-3567 Permissions, Privileges, and Access Controls vulnerability in IBM Tivoli Directory Server 5.2.0/6.0
slapd daemon in IBM Tivoli Directory Server (ITDS) 5.2.0 and 6.0.0 binds using SASL EXTERNAL, which allows attackers to bypass authentication and modify and delete directory data via unknown attack vectors.
low complexity
ibm CWE-264
5.8
2004-12-31 CVE-2004-2526 Directory Traversal vulnerability in IBM Tivoli Directory Server LDACGI
Directory traversal vulnerability in ldacgi.exe in IBM Tivoli Directory Server 4.1 and earlier allows remote attackers to view arbitrary files via a ..
network
low complexity
ibm
5.0