Trend Micro Security

IBM Tivoli Storage Manager FastBack Server Opcode 1335 Remote Code Execution Vulnerability

  危険度: : 緊急

  概要

A format string vulnerability exists in IBM Tivoli Storage Manager FastBack Server. The vulnerability is due to insufficient sanitization on parameters in certain type of requests. A remote unauthenticated attacker could exploit this vulnerability by sending crafted requests to server. Successful exploitation will result in arbitrary code execution within the context of system.

  トレンドマイクロの対策

Apply associated Trend Micro DPI Rules.

  対応方法

  Trend Micro Deep Security DPI Rule Number: 1007365