CVE-2016-5946
published 2016-09-26CVE-2016-5946: Directory traversal vulnerability in IBM Spectrum Control (formerly Tivoli Storage Productivity Center) 5.2.x before 5.2.11 allows remote authenticated users…
medium6.5CVSS 3.0
AVNACLPRLUINSUCHINAN
Directory traversal vulnerability in IBM Spectrum Control (formerly Tivoli Storage Productivity Center) 5.2.x before 5.2.11 allows remote authenticated users to read arbitrary files via a .. (dot dot) in a URL.
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | spectrum_control | — | — |
| ibm | spectrum_control | — | — |
| ibm | spectrum_control | — | — |
| ibm | spectrum_control | — | — |
| ibm | tivoli_storage_productivity_center | — | — |
| ibm | tivoli_storage_productivity_center | — | — |
| ibm | tivoli_storage_productivity_center | — | — |
| ibm | tivoli_storage_productivity_center | — | — |
| ibm | tivoli_storage_productivity_center | — | — |
| ibm | tivoli_storage_productivity_center | — | — |
| ibm | tivoli_storage_productivity_center | — | — |
| ibm | tivoli_storage_productivity_center | — | — |
| ibm | tivoli_storage_productivity_center | — | — |
| ibm | tivoli_storage_productivity_center | — | — |
| ibm | tivoli_storage_productivity_center | — | — |
| ibm | tivoli_storage_productivity_center | — | — |