Vulnerabilities
Vulnerable Software
Cross-site scripting (XSS) vulnerability in login/FilepathLogin.html in IBM Tivoli Continuous Data Protection (CDP) for Files 3.1.4.0 allows remote attackers to inject arbitrary web script or HTML via the reason parameter.
CVSS Score
4.3
EPSS Score
0.059
Published
2009-04-17
IBM Tivoli Continuous Data Protection for Files (CDP) 3.1.0 uses weak permissions (unrestricted write) for the Central Admin Global download directory, which allows local users to place arbitrary files into a location used for updating CDP clients.
CVSS Score
2.1
EPSS Score
0.0
Published
2007-11-05


Contact Us

Shodan ® - All rights reserved