First published: Thu Jun 02 2011(Updated: )
Tivoli Endpoint in IBM Tivoli Management Framework 3.7.1, 4.1, 4.1.1, and 4.3.1 has an unspecified "built-in account" that is "trivially" accessed, which makes it easier for remote attackers to send requests to restricted pages via a session on TCP port 9495, a different vulnerability than CVE-2011-1220.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Tivoli Management Framework | =4.3.1 | |
IBM Tivoli Management Framework | =3.7.1 | |
IBM Tivoli Management Framework | =4.1 | |
IBM Tivoli Management Framework | =4.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-2330 is considered to have a medium severity due to the risk posed by unauthorized access to restricted pages via the built-in account.
To fix CVE-2011-2330, it is recommended to update IBM Tivoli Management Framework to a version that addresses this vulnerability.
CVE-2011-2330 affects IBM Tivoli Management Framework versions 3.7.1, 4.1, 4.1.1, and 4.3.1.
Exploiting CVE-2011-2330 allows remote attackers to gain access to restricted resources through an uncontrolled built-in account.
Currently, the best practice is to restrict access to TCP port 9495 and implement additional authentication measures.