IBM Tivoli Storage Manager FastBack Server Opcode 1301 Remote Code Execution Vulnerability

  Severity: CRITICAL
  Advisory Date: MAY 31, 2016

  DESCRIPTION

A format string vulnerability exists in IBM Tivoli Storage Manager FastBack Server. The vulnerability is due to insufficient sanitization on parameters in certain type of requests. A remote unauthenticated attacker could exploit this vulnerability by sending crafted requests to server. Successful exploitation will result in arbitrary code execution within the context of system.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1007353