Home/Product/ibm spectrum protect
Product

ibm spectrum protect

18 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-27863
all versions
IBM Spectrum Protect Plus Server 10.1.13, under specific configurations, could allow an elevated user to obtain SMB credentials th
4.4MEDIUM
CVE-2022-22484
>= 8.1.12.000 and < 8.1.14
IBM Spectrum Protect Operations Center 8.1.12 and 8.1.13 could allow a local attacker to obtain sensitive information, caused by p
5.5MEDIUM
CVE-2022-22394
all versions
The IBM Spectrum Protect 8.1.14.000 server could allow a remote attacker to bypass security restrictions, caused by improper enfor
8.8HIGH
CVE-2021-20491
>= 7.1.0.000 and < 7.1.13
IBM Spectrum Protect Server 7.1 and 8.1 is subject to a stack-based buffer overflow caused by improper bounds checking during the
4.4MEDIUM
CVE-2020-5017
>= 10.1.0 and < 10.1.7
IBM Spectrum Protect Plus 10.1.0 through 10.1.6 may allow a local user to obtain access to information beyond their intended role
5.5MEDIUM
CVE-2020-4559
>= 8.1.0.000 and <= 8.1.10.000
IBM Spectrum Protect 7.1 and 8.1 could allow an attacker to cause a denial of service due ti improper validation of user-supplied
7.5HIGH
CVE-2020-4415
>= 7.1.0.0 and <= 7.1.10.0
IBM Spectrum Protect 7.1 and 8.1 server is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. This c
9.8CRITICAL
CVE-2020-4222
>= 10.1.0 and < 10.1.5
IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attacker to execute arbitrary code on the system. By using a spec
9.8CRITICAL
CVE-2020-4213
>= 10.1.0 and < 10.1.5
IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attacker to execute arbitrary code on the system. By using a spec
9.8CRITICAL
CVE-2020-4212
>= 10.1.0 and < 10.1.5
IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attacker to execute arbitrary code on the system. By using a spec
9.8CRITICAL
CVE-2020-4211
>= 10.1.0 and < 10.1.5
IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attacker to execute arbitrary code on the system. By using a spec
9.8CRITICAL
CVE-2020-4210
>= 10.1.0 and < 10.1.5
IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attacker to execute arbitrary code on the system. By using a spec
9.8CRITICAL
CVE-2018-2025
>= 7.1.0.0 and <= 7.1.8.5
IBM Spectrum Protect Backup-Archive Client and IBM Spectrum Protect for Virtual Environments 7.1 and 8.1 creates directories/files
4.4MEDIUM
CVE-2019-4267
>= 7.1.0.0 and < 7.1.8.6
The IBM Spectrum Protect 7.1 and 8.1 Backup-Archive Client is vulnerable to a buffer overflow. This could allow execution of arbit
7.8HIGH
CVE-2019-4236
>= 7.1.0.0 and <= 7.1.8.5
A IBM Spectrum Protect 7.l client backup or archive operation running for an HP-UX VxFS object is silently skipping Access Control
4.4MEDIUM
CVE-2019-4140
>= 7.1.0.0 and < 7.1.9.300
IBM Tivoli Storage Manager Server (IBM Spectrum Protect 7.1 and 8.1) could allow a local user to replace existing databases by res
7.1HIGH
CVE-2019-4093
all versions
IBM Tivoli Storage Manager (IBM Spectrum Protect 8.1.7) could allow a user to restore files and directories using IBM Spectrum Pro
4.4MEDIUM
CVE-2018-1786
>= 8.1.0.0 and <= 8.1.6.0
IBM Spectrum Protect 7.1 and 8.1 dsmc and dsmcad processes incorrectly accumulate TCP/IP sockets in a CLOSE_WAIT state. This can c
5.3MEDIUM
threatengine.sh