Vulnerabilities > IBM > Tivoli Monitoring > 6.3.0.1
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-09-19 | CVE-2017-1794 | Resource Exhaustion vulnerability in IBM Tivoli Monitoring IBM Tivoli Monitoring 6.2.3 through 6.2.3.5 and 6.3.0 through 6.3.0.7 are vulnerable to both TEPS user privilege escalation and possible denial of service due to unconstrained memory growth. | 6.0 |
2018-03-22 | CVE-2017-1789 | Code Injection vulnerability in IBM Tivoli Monitoring IBM Tivoli Monitoring V6 6.2.3 and 6.3.0 could allow an unauthenticated user to remotely execute code through unspecified methods. | 7.5 |
2017-06-27 | CVE-2016-6083 | Information Exposure vulnerability in IBM Tivoli Monitoring IBM Tivoli Monitoring V6 could allow an unauthenticated user to access SOAP queries that could contain sensitive information. | 5.0 |
2017-03-08 | CVE-2016-5933 | 7PK - Security Features vulnerability in IBM Tivoli Monitoring IBM Tivoli Monitoring 6.2 and 6.3 is vulnerable to possible host header injection attack that could lead to HTTP cache poisoning or firewall bypass. | 4.9 |
2015-02-02 | CVE-2014-6141 | Permissions, Privileges, and Access Controls vulnerability in IBM Tivoli Monitoring IBM Tivoli Monitoring (ITM) 6.2.0 through FP03, 6.2.1 through FP04, 6.2.2 through FP09, 6.2.3 through FP05, and 6.3.0 before FP04 allows remote authenticated users to bypass intended access restrictions and execute arbitrary commands by leveraging Take Action view authority to modify in-progress commands. | 8.5 |