VYPR

Director

by IBM

CVEs (6)

  • CVE-2009-0880Mar 12, 2009
    risk 0.08cvss epss 0.64

    Directory traversal vulnerability in the CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows remote attackers to load and execute arbitrary local DLL code via a .. (dot dot) in a /CIMListener/ URI in an M-POST request.

  • CVE-2009-0879Mar 12, 2009
    risk 0.05cvss epss 0.22

    The CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows remote attackers to cause a denial of service (daemon crash) via a long consumer name, as demonstrated by an M-POST request to a long /CIMListener/ URI.

  • CVE-2006-4681Sep 11, 2006
    risk 0.04cvss epss 0.12

    Directory traversal vulnerability in Redirect.bat in IBM Director before 5.10 allows remote attackers to read arbitrary files via a .. (dot dot) sequence in the file parameter.

  • CVE-2007-5612Nov 21, 2007
    risk 0.00cvss epss 0.03

    CIM Server in IBM Director 5.20.1 and earlier allows remote attackers to cause a denial of service (CPU consumption, connection slot exhaustion, and daemon crash) via a large number of idle connections.

  • CVE-2006-4682Sep 11, 2006
    risk 0.00cvss epss 0.01

    Multiple unspecified vulnerabilities in IBM Director before 5.10 allow remote attackers to cause a denial of service (crash) via unspecified vectors involving (1) malformed WMI CIM server requests and (2) malformed packets.

  • CVE-2006-4683Sep 11, 2006
    risk 0.00cvss epss 0.00

    IBM Director before 5.10 allows remote attackers to obtain sensitive information from HTTP headers via HTTP TRACE.