CVE-2003-1570

The server in IBM Tivoli Storage Manager (TSM) 5.1.x, 5.2.x before 5.2.1.2, and 6.x before 6.1 does not require credentials to observe the server console in some circumstances, which allows remote authenticated administrators to monitor server operations by establishing a console mode session, related to "session exposure."

Scoring

Severity
LOW
CVSS base score
3.5
CVSS vector
AV:N/AC:M/Au:S/C:P/I:N/A:N
EPSS probability
0.30%
Published
2009-03-31
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs