QID 376379

QID 376379: IBM Tivoli Netcool Log4j Vulnerability (6527266)

IBM Tivoli Netcool/Impact is network management software that automates the support of business-critical functions.

Affected Versions:
IBM Tivoli Netcool Impact 7.1.0.18 to 7.1.0.24

Allows a remote attacker to execute arbitrary code on the system, caused by the failure to protect against attacker controlled LDAP and other JNDI related endpoints by JNDI features.

  • CVSS V3 rated as Critical - 10 severity.
  • CVSS V2 rated as Critical - 9.3 severity.
  • Solution
    Vendor has released patch to address this issue .For more details about product and patch information please refer vendor's advisory 6527266.

    Vendor References

    CVEs related to QID 376379

    Software Advisories
    Advisory ID Software Component Link
    6527266 URL Logo www.ibm.com/support/pages/node/6527266