CVE-2016-8925

Severity
6.5MEDIUM
EPSS
0.2%
top 56.56%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 14
Latest updateMay 17

Description

IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 could allow a remote attacker to include arbitrary files which could allow the attacker to read any file on the system. IBM X-Force ID: 118538.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Patches

🔴Vulnerability Details

3
GHSA
GHSA-7533-7hr2-348p: IBM Tivoli Application Dependency Discovery Manager 72022-05-17
CVEList
CVE-2016-8925: IBM Tivoli Application Dependency Discovery Manager 72017-04-14
OSV
libarchive vulnerabilities2016-07-14

💬Community

1
Bugzilla
CVE-2015-8925 libarchive: Unclear invalid memory read in mtree parser2016-06-21
CVE-2016-8925 (MEDIUM CVSS 6.5) | IBM Tivoli Application Dependency D | cvebase.io