Return to CVE list

CVE-2007-4880

10.0
Critical

CVE-2007-4880

cve@mitre.org
Modified

Description

Buffer overflow in the Client Acceptor Daemon (CAD), dsmcad.exe, in certain IBM Tivoli Storage Manager (TSM) clients 5.1 before 5.1.8.1, 5.2 before 5.2.5.2, 5.3 before 5.3.5.3, and 5.4 before 5.4.1.2 allows remote attackers to execute arbitrary code via crafted HTTP headers, aka IC52905.

References

af854a3a-2127-422b-91ae-364da2661108
http://osvdb.org/38161
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/26883
af854a3a-2127-422b-91ae-364da2661108
http://securityreason.com/securityalert/3184
af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/480492
af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/25743
af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id?1018725
af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2007/3228