CVE Database
/

CVE-2011-2758

Back to search

CVE-2011-2758

Published: Jul 17, 2011

Modified: Sep 16, 2024

PUBLISHED

Description

IDSWebApp in the Web Administration Tool in IBM Tivoli Directory Server (TDS) 6.2 before 6.2.0.3-TIV-ITDS-IF0004 does not require authentication for access to LDAP Server log files, which allows remote attackers to obtain sensitive information via a crafted URL.

VendorProductVersions

n/a

n/a

affected
n/a

References

45107
third-party-advisory
x_refsource_SECUNIA
IO14060
vendor-advisory
x_refsource_AIXAPAR
48512
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now