Secunia Logo
 
CVE Reference: CVE-2007-4348
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-4348

Description:
Cross-site scripting (XSS) vulnerability in the CAD service in IBM Tivoli Storage Manager (TSM) Client 5.3.5.3 and 5.4.1.2 for Windows allows remote attackers to inject arbitrary web script or HTML via HTTP requests to port 1581, which generate log entries in a dsmerror.log file that is accessible through a certain web interface.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/38125

ST
  1018868

SAID
  Secunia Advisory: SA27013

MISC
  http://secunia.com/secunia_research/2007-75/advisory

BID
  26221


Return to the previous page.