Vulnerabilities > IBM > Tivoli Storage Manager Fastback > High

DATE CVE VULNERABILITY TITLE RISK
2015-04-06 CVE-2015-0119 Improper Access Control vulnerability in IBM Tivoli Storage Manager Fastback
FastBack Mount in IBM Tivoli Storage Manager FastBack 6.1.x before 6.1.11.1 allows remote attackers to execute arbitrary code by connecting to the Mount port.
network
low complexity
ibm CWE-284
7.5
2010-10-05 CVE-2010-3760 Resource Management Errors vulnerability in IBM Tivoli Storage Manager Fastback
FastBackMount.exe in the Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 does not properly handle a certain failure to allocate memory, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash, and recovery failure) by specifying a large size value within TCP packet data.
network
low complexity
ibm CWE-399
7.8
2010-08-20 CVE-2010-3059 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in IBM Tivoli Storage Manager Fastback
Buffer overflow in the message-protocol implementation in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, allows remote attackers to read and modify data, and possibly have other impact, via an unspecified command.
network
low complexity
ibm CWE-119
7.5
2010-08-20 CVE-2010-3058 Resource Management Errors vulnerability in IBM Tivoli Storage Manager Fastback
The Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, establishes an open UDP port, which might allow remote attackers to overwrite memory locations and execute arbitrary code, or cause a denial of service (application hang), via unspecified vectors.
network
low complexity
ibm CWE-399
7.5