Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
335 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5) | 1.4% | — | IBM Tivoli Storage Manager Fastback | 5/10/2010 | 16/6/2026 | The _CalcHashValueWithLength function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 does not properly validate an unspecified length value, which allows remote attackers to cause a denial of service (daemon crash) by sending data… | |
| Modificada | Media (5) | 2.2% | — | IBM Tivoli Storage Manager Fastback | 5/10/2010 | 16/6/2026 | The _DAS_ReadBlockReply function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via data in a TCP packet. NOTE: this might overlap… | |
| Modificada | Alta (10) | 4.9% | — | IBM Tivoli Storage Manager Fastback | 5/10/2010 | 16/6/2026 | The FXCLI_OraBR_Exec_Command function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 uses values of packet fields to determine the content and length of data copied to memory, which allows remote attackers to execute arbitrary code… | |
| Modificada | Media (5) | 2.7% | — | IBM Tivoli Storage Manager Fastback | 20/8/2010 | 16/6/2026 | Unspecified vulnerability in the message-protocol implementation in the Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, allows remote attackers to cause a denial of service (recovery failure), and possibly trigger loss of data, via unknown vectors. | |
| Modificada | Media (5) | 2.2% | — | IBM Tivoli Storage Manager Fastback | 20/8/2010 | 16/6/2026 | Unspecified vulnerability in the message-protocol implementation in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, allows remote attackers to cause a denial of service (daemon outage) via unknown vectors. | |
| Modificada | Alta (7.5) | 1.5% | — | IBM Tivoli Storage Manager Fastback | 20/8/2010 | 16/6/2026 | Buffer overflow in the message-protocol implementation in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, allows remote attackers to read and modify data, and possibly have other impact, via an unspecified command. | |
| Modificada | Alta (7.5) | 2.5% | — | IBM Tivoli Storage Manager Fastback | 20/8/2010 | 16/6/2026 | The Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, establishes an open UDP port, which might allow remote attackers to overwrite memory locations and execute arbitrary code, or cause a denial of service (application hang), via unspecified vectors. | |
| Modificada | Alta (9.3) | 1.7% | — | IBM Tivoli Storage Manager | 4/11/2009 | 16/6/2026 | Multiple unspecified vulnerabilities in the (1) UNIX and (2) Linux backup-archive clients, and the (3) OS/400 API client, in IBM Tivoli Storage Manager (TSM) 5.3 before 5.3.6.6, 5.4 before 5.4.2, and 5.5 before 5.5.1, when the MAILPROG option is enabled, allow attackers to read, modify, or delete arbitrary files via… | |
| Modificada | Alta (10) | 5.8% | — | IBM Tivoli Storage Manager | 4/11/2009 | 16/6/2026 | Buffer overflow in the traditional client scheduler in the client in IBM Tivoli Storage Manager (TSM) 5.3 before 5.3.6.7 and 5.4 before 5.4.2 allows remote attackers to execute arbitrary code via unspecified vectors. | |
| Modificada | Alta (9.3) | 37% | 💥 Exploit | IBM Tivoli Storage Manager | 4/11/2009 | 16/6/2026 | Stack-based buffer overflow in the client acceptor daemon (CAD) scheduler in the client in IBM Tivoli Storage Manager (TSM) 5.3 before 5.3.6.7, 5.4 before 5.4.3, 5.5 before 5.5.2.2, and 6.1 before 6.1.0.2, and TSM Express 5.3.3.0 through 5.3.6.6, allows remote attackers to execute arbitrary code via crafted data in a… | |
| Modificada | Alta (7.1) | 2.1% | — | IBM Tivoli Storage Manager Client | 5/5/2009 | 16/6/2026 | The IBM Tivoli Storage Manager (TSM) client 5.5.0.0 through 5.5.1.17 on AIX and Windows, when SSL is used, allows remote attackers to conduct unspecified man-in-the-middle attacks and read arbitrary files via unknown vectors. | |
| Modificada | Alta (7.5) | 1.7% | — | IBM Tivoli Storage Manager ClientIBM Tivoli Storage Manager Express | 5/5/2009 | 16/6/2026 | Unspecified vulnerability in the Java GUI in the IBM Tivoli Storage Manager (TSM) client 5.2.0.0 through 5.2.5.3, 5.3.0.0 through 5.3.6.5, 5.4.0.0 through 5.4.2.6, and 5.5.0.0 through 5.5.1.17, and the TSM Express client 5.3.3.0 through 5.3.6.5, allows attackers to read or modify arbitrary files via unknown vectors. | |
| Modificada | Alta (10) | 3.3% | — | IBM Tivoli Storage Manager ClientIBM Tivoli Storage Manager Express | 5/5/2009 | 16/6/2026 | Buffer overflow in the Web GUI in the IBM Tivoli Storage Manager (TSM) client 5.1.0.0 through 5.1.8.2, 5.2.0.0 through 5.2.5.3, 5.3.0.0 through 5.3.6.4, 5.4.0.0 through 5.4.2.6, and 5.5.0.0 through 5.5.1.17 allows attackers to cause a denial of service (application crash) or execute arbitrary code via unspecified… | |
| Modificada | Alta (10) | 71% | 💥 Exploit | IBM Tivoli Storage Manager ClientIBM Tivoli Storage Manager Express | 5/5/2009 | 16/6/2026 | Multiple stack-based buffer overflows in dsmagent.exe in the Remote Agent Service in the IBM Tivoli Storage Manager (TSM) client 5.1.0.0 through 5.1.8.2, 5.2.0.0 through 5.2.5.3, 5.3.0.0 through 5.3.6.4, and 5.4.0.0 through 5.4.1.96, and the TSM Express client 5.3.3.0 through 5.3.6.4, allow remote attackers to execute… | |
| Modificada | Alta (10) | 2.0% | — | IBM Tivoli Storage Manager | 31/3/2009 | 16/6/2026 | Unspecified vulnerability in the server in IBM Tivoli Storage Manager (TSM) 5.3.x before 5.3.2 and 6.x before 6.1 has unknown impact and attack vectors related to the "admin command line." | |
| Modificada | Media (4.3) | 2.0% | — | IBM Tivoli Storage Manager | 31/3/2009 | 16/6/2026 | The server in IBM Tivoli Storage Manager (TSM) 4.2.x on MVS, 5.1.9.x before 5.1.9.1, 5.1.x before 5.1.10, 5.2.2.x before 5.2.2.3, 5.2.x before 5.2.3, 5.3.x before 5.3.0, and 6.x before 6.1, when the HTTP communication method is enabled, allows remote attackers to cause a denial of service (daemon crash or hang) via… | |
| Modificada | Baja (3.5) | 1.00% | — | IBM Tivoli Storage Manager | 31/3/2009 | 16/6/2026 | The server in IBM Tivoli Storage Manager (TSM) 5.1.x, 5.2.x before 5.2.1.2, and 6.x before 6.1 does not require credentials to observe the server console in some circumstances, which allows remote authenticated administrators to monitor server operations by establishing a console mode session, related to "session… | |
| Modificada | Alta (10) | 29% | — | IBM Tivoli Storage ManagerIBM Tivoli Storage Manager Express | 11/3/2009 | 16/6/2026 | Heap-based buffer overflow in adsmdll.dll 5.3.7.7296, as used by the daemon (dsmsvc.exe) in the backup server in IBM Tivoli Storage Manager (TSM) Express 5.3.7.3 and earlier and TSM 5.2, 5.3 before 5.3.6.0, and 5.4.0.0 through 5.4.4.0, allows remote attackers to execute arbitrary code via a crafted length value. | |
| Modificada | Alta (10) | 6.4% | — | IBM Tivoli Storage Manager HSM | 10/3/2009 | 16/6/2026 | Buffer overflow in the client in IBM Tivoli Storage Manager (TSM) HSM 5.3.2.0 through 5.3.5.0, 5.4.0.0 through 5.4.2.5, and 5.5.0.0 through 5.5.1.4 on Windows allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors. | |
| Modificada | Alta (10) | 11% | — | IBM Tivoli Storage Manager ClientIBM Tivoli Storage Manager Express | 31/10/2008 | 16/6/2026 | Heap-based buffer overflow in the Data Protection for SQL CAD service (aka dsmcat.exe) in the Client Acceptor Daemon (CAD) and the scheduler in the Backup-Archive client 5.1.0.0 through 5.1.8.1, 5.2.0.0 through 5.2.5.2, 5.3.0.0 through 5.3.6.1, 5.4.0.0 through 5.4.2.2, and 5.5.0.0 through 5.5.0.91 in IBM Tivoli… | |
| Modificada | Alta (10) | 4.5% | — | IBM Informix Dynamic ServerIBM Informix Storage Manager | 13/2/2008 | 16/6/2026 | Multiple stack-based and heap-based buffer overflows in the Windows RPC components for IBM Informix Storage Manager (ISM), as used in Informix Dynamic Server (IDS) 10.00.xC8 and earlier and 11.10.xC2 and earlier, allow attackers to execute arbitrary code via crafted XDR requests. | |
| Modificada | Alta (10) | 8.5% | — | IBM Tivoli Storage Manager Express | 12/1/2008 | 16/6/2026 | Heap-based buffer overflow in the Express Backup Server service (dsmsvc.exe) in IBM Tivoli Storage Manager (TSM) Express 5.3 before 5.3.7.3 allows remote attackers to execute arbitrary code via a packet with a large length value. | |
| Modificada | Media (4.3) | 1.2% | — | IBM Tivoli Storage Manager Client | 30/10/2007 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in the CAD service in IBM Tivoli Storage Manager (TSM) Client 5.3.5.3 and 5.4.1.2 for Windows allows remote attackers to inject arbitrary web script or HTML via HTTP requests to port 1581, which generate log entries in a dsmerror.log file that is accessible through a certain… | |
| Modificada | Alta (10) | 63% | 💥 Exploit | Broadcom Brightstor Hierarchical Storage Manager | 1/10/2007 | 16/6/2026 | Multiple stack-based buffer overflows in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r11.6 allow remote attackers to execute arbitrary code via unspecified CsAgent service commands with certain opcodes, related to missing validation of a length parameter. | |
| Modificada | Media (6.8) | 1.8% | — | Broadcom Brightstor Hierarchical Storage Manager | 1/10/2007 | 16/6/2026 | Multiple SQL injection vulnerabilities in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r11.6 allow remote attackers to execute arbitrary SQL commands via CsAgent service commands with opcodes (1) 0x07, (2) 0x08, (3) 0x09, (4) 0x1E, (5) 0x32, (6) 0x36, (7) 0x40, and possibly others. |