9
CVE-2000-1239
- EPSS 2.08%
- Veröffentlicht 31.12.2000 05:00:00
- Zuletzt bearbeitet 23.09.2026 09:10:01
- Erkennungen
The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, which allows remote authenticated users to bypass file permissions on Tivoli Endpoint Configuration data files via an unspecified manipulation of log files.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Tivoli Management Framework Version 3.7.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.08% | 0.79 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9 | 8 | 10 |
AV:N/AC:L/Au:S/C:C/I:C/A:C
|
http://www-1.ibm.com/support/docview.wss?uid=swg21082896
http://www.securityfocus.com/bid/17085
https://exchange.xforce.ibmcloud.com/vulnerabilities/3927