Skip to main content

Vendor/product archive

ibm / tivoli_monitoring CVEs

Beta · best-effort

29 CVEs tagged to ibm / tivoli_monitoring7 Critical, 14 High, 8 Medium, 0 Low, 0 Unrated.

CVE-2025-3356

Published Oct 30, 2025

IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 21 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL r…

CVSS 8.6 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-3355

Published Oct 30, 2025

IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 21 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL r…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-3354

Published Aug 6, 2025

IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 20 is vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A remote attacker could overflow a…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-3320

Published Aug 6, 2025

IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 20 is vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A remote attacker could overflow a…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-3357

Published May 28, 2025

IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 19 could allow a remote attacker to execute arbitrary code due to improper validation of an index value of a dynamically…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2020-4311

Published Apr 23, 2020

IBM Tivoli Monitoring 6.3.0 could allow a local attacker to execute arbitrary code on the system. By placing a specially crafted file, an attacker could exploit this vulnerability…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2019-4592

Published Feb 13, 2020

IBM Tivoli Monitoring Service 6.3.0.7.3 through 6.3.0.7.10 could allow an unauthorized user to access and modify operation aspects of the ITM monitoring server possibly leading to…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-1794

Published Sep 19, 2018

IBM Tivoli Monitoring 6.2.3 through 6.2.3.5 and 6.3.0 through 6.3.0.7 are vulnerable to both TEPS user privilege escalation and possible denial of service due to unconstrained mem…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-1789

Published Mar 22, 2018

IBM Tivoli Monitoring V6 6.2.3 and 6.3.0 could allow an unauthenticated user to remotely execute code through unspecified methods. IBM X-Force ID: 137034.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-1635

Published Dec 13, 2017

IBM Tivoli Monitoring V6 6.2.2.x could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free error. A remote attacker could exploit this vuln…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2017-1183

Published Jul 17, 2017

IBM Tivoli Monitoring Portal v6 could allow a local (network adjacent) attacker to modify SQL commands to the Portal Server, when default client-server communications, HTTP, are b…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-1182

Published Jul 17, 2017

IBM Tivoli Monitoring Portal v6 could allow a local (network adjacent) attacker to execute arbitrary commands on the system, when default client-server default communications, HTT…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2017-1181

Published Jul 17, 2017

IBM Tivoli Monitoring Portal V6 client could allow a local attacker to gain elevated privileges for IBM Tivoli Monitoring, caused by the default console connection not being encry…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2016-6083

Published Jun 27, 2017

IBM Tivoli Monitoring V6 could allow an unauthenticated user to access SOAP queries that could contain sensitive information. IBM X-Force ID: 117696.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-5933

Published Mar 8, 2017

IBM Tivoli Monitoring 6.2 and 6.3 is vulnerable to possible host header injection attack that could lead to HTTP cache poisoning or firewall bypass. IBM Reference #: 1997223.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-2946

Published Dec 1, 2016

Stack-based buffer overflow in the ax Shared Libraries in the Agent in IBM Tivoli Monitoring (ITM) 6.2.2 before FP9, 6.2.3 before FP5, and 6.3.0 before FP2 on Linux and UNIX allow…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2015-7411

Published Mar 12, 2016

The portal client in IBM Tivoli Monitoring (ITM) 6.2.2 through FP9, 6.2.3 through FP5, and 6.3.0 through FP6 allows remote authenticated users to gain privileges via unspecified v…

CVSS 9.9 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-5003

Published Jan 3, 2016

The portal in IBM Tivoli Monitoring (ITM) 6.2.2 through FP9, 6.2.3 through FP5, and 6.3.0 before FP7 allows remote authenticated users to execute arbitrary commands by leveraging…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2014-6141

Published Feb 2, 2015

IBM Tivoli Monitoring (ITM) 6.2.0 through FP03, 6.2.1 through FP04, 6.2.2 through FP09, 6.2.3 through FP05, and 6.3.0 before FP04 allows remote authenticated users to bypass inten…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2013-0576

Published May 28, 2013

Cross-site scripting (XSS) vulnerability in the Tivoli Enterprise Portal browser client in IBM Tivoli Monitoring 6.2.0 through FP03, 6.2.1 through FP04, 6.2.2 through FP09, and 6.…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 29 CVEsPage 1 of 2