CVE-2016-6110

MEDIUM

IBM Tivoli Storage Manager - Info Disclosure

Title source: llm

Description

IBM Tivoli Storage Manager discloses unencrypted login credentials to Vmware vCenter that could be obtained by a local user.

Scores

CVSS v3 6.5
EPSS 0.0005
EPSS Percentile 13.9%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N

Classification

CWE
CWE-255
Status published

Affected Products (50)

ibm/tivoli_storage_manager < 7.1.6.3
ibm/tivoli_storage_manager
ibm/tivoli_storage_manager_for_virtual_environments_data_protection_for_vmware < 7.1.6.3
ibm/tivoli_storage_manager_for_virtual_environments_data_protection_for_vmware
IBM Corporation/Tivoli Storage Manager < 5.3.5.3
IBM Corporation/Tivoli Storage Manager < 5.4.1.2
IBM Corporation/Tivoli Storage Manager < 4.2
IBM Corporation/Tivoli Storage Manager < 4.2.1
IBM Corporation/Tivoli Storage Manager < 5.1.8
IBM Corporation/Tivoli Storage Manager < 5.2.5.1
IBM Corporation/Tivoli Storage Manager < 5.2.7
IBM Corporation/Tivoli Storage Manager < 5.2.8
IBM Corporation/Tivoli Storage Manager < 5.2.9
IBM Corporation/Tivoli Storage Manager < 5.3.0
IBM Corporation/Tivoli Storage Manager < 5.3.1
... and 35 more

Timeline

Published Feb 01, 2017
Tracked Since Feb 18, 2026