cbcvebase.
CVE-2007-6742
published 2011-04-21

CVE-2007-6742: The get_filter_list function in IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0006 does not properly perform certain sub filter parsing…

PriorityP422medium6.8CVSS 2.0
AVNACLAuSCNINAC
EPSS
0.97%
57.7th percentile
The get_filter_list function in IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0006 does not properly perform certain sub filter parsing, which allows remote authenticated users to cause a denial of service (infinite loop) via a malformed search filter.

Affected

2 ranges
VendorProductVersion rangeFixed in
ibmtivoli_directory_server
ibmtivoli_directory_server
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.