IBM Tivoli Storage Manager FastBack Server Opcode 1301 Remote Code Execution Vulnerability
Publish Date: 31 de мая de 2016
Severity: : Critical
Advisory Date: 31 de мая de 2016
DESCRIPTION
A format string vulnerability exists in IBM Tivoli Storage Manager FastBack Server. The vulnerability is due to insufficient sanitization on parameters in certain type of requests. A remote unauthenticated attacker could exploit this vulnerability by sending crafted requests to server. Successful exploitation will result in arbitrary code execution within the context of system.
INFORMATION EXPOSURE
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1007353