HIGH🇵🇱 Wersja polska

CVE-2025-3354

CVSS 8.1v3.1pub. 2025-08-06upd. 2025-08-13

IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 20 is vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A remote attacker could overflow a buffer and execute arbitrary code on the system or cause the server to crash.

CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
  • IBM Tivoli Monitoring

    APP
    Ibm
    6.3.0.7
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
RCEMemory
CWE
References

Related vulnerabilities

CVE-2025-3357CRITICAL9.8PL ✓same product

RCE w IBM Tivoli Monitoring — nieprawidłowa walidacja indeksu tablicy

CVE-2017-1789CRITICAL9.8PL ✓same product

RCE bez uwierzytelnienia w IBM Tivoli Monitoring V6

CVE-2015-7411CRITICAL9.9PL ✓same product

Eskalacja uprawnień w IBM Tivoli Monitoring przez portal client

CVE-2025-3355HIGH7.5same product

IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 21 could allow a remote attacker to traverse direct...

CVE-2025-3356HIGH8.6same product

IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 21 could allow a remote attacker to traverse direct...