|
|
|
Vulnerability Note VU#194753IBM Tivoli Directory Server may allow unauthorized accessOverviewIBM Tivoli Directory Server may allow unauthorized access to change, modify, and/or delete directory data under certain circumstances.I. DescriptionThe IBM Tivoli Directory Server product is described as:IBM Tivoli Directory Server provides a powerful Lightweight Directory Access Protocol (LDAP) identity infrastructure that is the foundation for deploying comprehensive identity management applications and advanced software architectures like Web services. The Tivoli Directory Server may allow unauthorized access enabling attackers to manipulate directory data that they should not be able to access or change. Additional details about the underlying cause of the vulnerability are not available. II. ImpactAn attacker may be able to access, delete, modify, or change directory data.III. SolutionApply an updatePlease reference the IBM Security Vulnerability note on this issue for information on updates, fixes, and workarounds.
References
Thanks to IBM for reporting this vulnerability. This document was written by Ken MacInnis.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
||||||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||||