cbcvebase.
CVE-2009-3855
published 2009-11-04

CVE-2009-3855: Multiple unspecified vulnerabilities in the (1) UNIX and (2) Linux backup-archive clients, and the (3) OS/400 API client, in IBM Tivoli Storage Manager (TSM)…

PriorityP342critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
1.72%
74.9th percentile
Multiple unspecified vulnerabilities in the (1) UNIX and (2) Linux backup-archive clients, and the (3) OS/400 API client, in IBM Tivoli Storage Manager (TSM) 5.3 before 5.3.6.6, 5.4 before 5.4.2, and 5.5 before 5.5.1, when the MAILPROG option is enabled, allow attackers to read, modify, or delete arbitrary files via unknown vectors.

Affected

17 ranges
VendorProductVersion rangeFixed in
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
ibmtivoli_storage_manager
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.