First published: Thu Mar 12 2009(Updated: )
Directory traversal vulnerability in the CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows remote attackers to load and execute arbitrary local DLL code via a .. (dot dot) in a /CIMListener/ URI in an M-POST request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Director | <=5.20.3 | |
IBM Director | =3.1.1 | |
IBM Director | =4.10 | |
IBM Director | =4.11 | |
IBM Director | =4.12 | |
IBM Director | =4.20 | |
IBM Director | =4.21 | |
IBM Director | =4.22 | |
IBM Director | =5.10.0 | |
IBM Director | =5.10.1 | |
IBM Director | =5.10.2 | |
IBM Director | =5.10.3 | |
IBM Director | =5.20.0 | |
IBM Director | =5.20.1 | |
IBM Director | =5.20.2 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.