9.8

CVE-2025-3320

Medienbericht

IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 20 is vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A remote attacker could overflow a buffer and execute arbitrary code on the system or cause the server to crash.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IbmTivoli Monitoring Version6.3.0.7 Update-
IbmTivoli Monitoring Version6.3.0.7 Updatesp1
IbmTivoli Monitoring Version6.3.0.7 Updatesp10
IbmTivoli Monitoring Version6.3.0.7 Updatesp11
IbmTivoli Monitoring Version6.3.0.7 Updatesp12
IbmTivoli Monitoring Version6.3.0.7 Updatesp13
IbmTivoli Monitoring Version6.3.0.7 Updatesp14
IbmTivoli Monitoring Version6.3.0.7 Updatesp15
IbmTivoli Monitoring Version6.3.0.7 Updatesp16
IbmTivoli Monitoring Version6.3.0.7 Updatesp17
IbmTivoli Monitoring Version6.3.0.7 Updatesp18
IbmTivoli Monitoring Version6.3.0.7 Updatesp19
IbmTivoli Monitoring Version6.3.0.7 Updatesp2
IbmTivoli Monitoring Version6.3.0.7 Updatesp20
IbmTivoli Monitoring Version6.3.0.7 Updatesp3
IbmTivoli Monitoring Version6.3.0.7 Updatesp4
IbmTivoli Monitoring Version6.3.0.7 Updatesp5
IbmTivoli Monitoring Version6.3.0.7 Updatesp6
IbmTivoli Monitoring Version6.3.0.7 Updatesp7
IbmTivoli Monitoring Version6.3.0.7 Updatesp8
IbmTivoli Monitoring Version6.3.0.7 Updatesp9
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.24% 0.463
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
psirt@us.ibm.com 8.1 2.2 5.9
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-122 Heap-based Buffer Overflow

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().