CVE-2017-1182
HIGH EXPLOITEDIBM Tivoli Monitoring Portal <6 - Command Injection
Title source: llmDescription
IBM Tivoli Monitoring Portal v6 could allow a local (network adjacent) attacker to execute arbitrary commands on the system, when default client-server default communications, HTTP, are being used. IBM X-Force ID: 123493.
Exploits (1)
Scores
CVSS v3
7.5
EPSS
0.0254
EPSS Percentile
85.5%
Attack Vector
ADJACENT_NETWORK
CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
VulnCheck KEV
2021-01-21
Status
published
Products (6)
ibm/tivoli_monitoring
6.2.2.9
ibm/tivoli_monitoring
6.2.3.5
ibm/tivoli_monitoring
6.3.0.7
IBM/Tivoli Monitoring V6
6.2.2.9
IBM/Tivoli Monitoring V6
6.2.3.5
IBM/Tivoli Monitoring V6
6.3.0.7
Published
Jul 17, 2017
Tracked Since
Feb 18, 2026