CVE-2015-1976

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
08/02/2017
Last modified:
20/04/2025

Description

IBM Security Directory Server could allow an authenticated user to execute commands into the web administration tool that would cause the tool to crash.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:security_directory_server:*:*:*:*:*:*:*:* 6.3.0.0 (including) 6.3.1.15 (including)
cpe:2.3:a:ibm:security_directory_server:*:*:*:*:*:*:*:* 6.4.0.0 (including) 6.4.0.6 (including)
cpe:2.3:a:ibm:tivoli_directory_server:*:*:*:*:*:*:*:* 6.0 (including) 6.0.0.77 (including)
cpe:2.3:a:ibm:tivoli_directory_server:*:*:*:*:*:*:*:* 6.1.0 (including) 6.1.0.72 (including)
cpe:2.3:a:ibm:tivoli_directory_server:*:*:*:*:*:*:*:* 6.2.0.0 (including) 6.2.0.48 (including)
cpe:2.3:a:ibm:tivoli_directory_server:*:*:*:*:*:*:*:* 6.3.0.0 (including) 6.3.0.41 (including)