CVE-2015-1942: Input Validation
The server in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.12 allows remote attackers to write to arbitrary files, and subsequently execute these files, via a crafted TCP packet to an unspecified port.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2015-1942?
CVE-2015-1942 is a vulnerability in IBM Tivoli Storage Manager FastBack 6.1 that allows remote attackers to write to arbitrary files and execute them via crafted TCP packets.
What are the affected versions of CVE-2015-1942?
CVE-2015-1942 affects IBM Tivoli Storage Manager FastBack versions 6.1.0.0 through 6.1.11.1.
What is the impact of CVE-2015-1942?
The impact of CVE-2015-1942 is that it can lead to unauthorized file execution on the affected system.
How do I fix CVE-2015-1942?
To fix CVE-2015-1942, upgrade IBM Tivoli Storage Manager FastBack to version 6.1.12 or later.
Is CVE-2015-1942 a critical vulnerability?
CVE-2015-1942 is considered a high severity vulnerability due to its potential for remote code execution.