IBM Tivoli Endpoint Manager Mobile Device Management Arbitrary Code Execution Vulnerability
BID:71507
Info
IBM Tivoli Endpoint Manager Mobile Device Management Arbitrary Code Execution Vulnerability
| Bugtraq ID: | 71507 |
| Class: | Unknown |
| CVE: |
CVE-2014-6140 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 04 2014 12:00AM |
| Updated: | Dec 04 2014 12:00AM |
| Credit: | Lutz Wolf of RedTeam Pentesting GmbH. |
| Vulnerable: |
IBM Tivoli Endpoint Manager Mobile Device Management 9.0 IBM Tivoli Endpoint Manager Mobile Device Management 8.2 IBM Tivoli Endpoint Manager Mobile Device Management 8.1 |
| Not Vulnerable: |
IBM Tivoli Endpoint Manager Mobile Device Management 9.0.60100 |
Discussion
IBM Tivoli Endpoint Manager Mobile Device Management Arbitrary Code Execution Vulnerability
IBM Tivoli Endpoint Manager Mobile Device Management is prone to an arbitrary code-execution vulnerability.
An attacker can leverage this issue to execute arbitrary code within the context of the application.
IBM Tivoli Endpoint Manager Mobile Device Management is prone to an arbitrary code-execution vulnerability.
An attacker can leverage this issue to execute arbitrary code within the context of the application.
Solution / Fix
IBM Tivoli Endpoint Manager Mobile Device Management Arbitrary Code Execution Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
IBM Tivoli Endpoint Manager Mobile Device Management Arbitrary Code Execution Vulnerability
References:
References: