First published: Wed Feb 01 2017(Updated: )
IBM Tivoli Storage Manager for Virtual Environments (VMware) could disclose the Windows domain credentials to a user with a high level of privileges.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Tivoli Storage Manager for Virtual Environments Data Protection for VMware | =7.1.3 | |
IBM Tivoli Storage Manager for Virtual Environments Data Protection for VMware | =7.1.4 | |
IBM Tivoli Storage Manager for Virtual Environments Data Protection for VMware | =7.1.4.0 | |
IBM Tivoli Storage Manager for Virtual Environments Data Protection for VMware | =7.1.6 | |
IBM Tivoli Storage Manager for Virtual Environments Data Protection for VMware | =7.1.6.2 | |
IBM Tivoli Storage Manager for Virtual Environments Data Protection for VMware | =7.1.6.3 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-6034 has a severity rating of medium, indicating a moderate potential for impact.
To fix CVE-2016-6034, upgrade to IBM Tivoli Storage Manager for Virtual Environments versions 7.1.5 or higher.
CVE-2016-6034 affects IBM Tivoli Storage Manager for Virtual Environments versions 7.1.3, 7.1.4, and 7.1.6.
CVE-2016-6034 is a credential disclosure vulnerability that could expose Windows domain credentials.
Users with a high level of privileges using affected IBM Tivoli Storage Manager for Virtual Environments versions are primarily impacted by CVE-2016-6034.