CVE-2014-6151Improper Input Validation in IBM Tivoli Integrated Portal

Severity
3.5LOWNVD
EPSS
0.2%
top 54.59%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 25
Latest updateMay 17

Description

CRLF injection vulnerability in IBM Tivoli Integrated Portal (TIP) 2.2.x allows remote authenticated users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.

CVSS vector

AV:N/AC:M/C:N/I:P/A:NExploitability: 6.8 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-mxr4-gmj3-87f7: CRLF injection vulnerability in IBM Tivoli Integrated Portal (TIP) 22022-05-17
CVEList
CVE-2014-6151: CRLF injection vulnerability in IBM Tivoli Integrated Portal (TIP) 22014-10-25

📋Vendor Advisories

1
Red Hat
net-snmp: AgentX incorrectly handles multi-object requests leading to DoS2014-03-06
CVE-2014-6151 — Improper Input Validation in IBM | cvebase