vendor:
IBM Tivoli Storage Manager Express
by:
jduck
7.5
CVSS
HIGH
Stack Buffer Overflow
119
CWE
Product Name: IBM Tivoli Storage Manager Express
Affected Version From: IBM Tivoli Storage Manager Express 5.3.6.2
Affected Version To: IBM Tivoli Storage Manager Express 5.3.6.2
Patch Exists: NO
Related CWE: CVE-2009-3853
CPE: a:ibm:tivoli_storage_manager_express:5.3.6.2
Platforms Tested: Windows
2010
IBM Tivoli Storage Manager Express CAD Service Buffer Overflow
This module exploits a stack buffer overflow in the IBM Tivoli Storage Manager Express CAD Service. By sending a 'ping' packet containing a long string, an attacker can execute arbitrary code. NOTE: the dsmcad.exe service must be in a particular state (CadWaitingStatus = 1) in order for the vulnerable code to be reached. This state doesn't appear to be reachable when the TSM server is not running. This service does not restart.
Mitigation:
Unknown