{"containers":{"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-09-20T00:00:00.000Z","descriptions":[{"lang":"en","value":"Buffer overflow in the Client Acceptor Daemon (CAD), dsmcad.exe, in certain IBM Tivoli Storage Manager (TSM) clients 5.1 before 5.1.8.1, 5.2 before 5.2.5.2, 5.3 before 5.3.5.3, and 5.4 before 5.4.1.2 allows remote attackers to execute arbitrary code via crafted HTTP headers, aka IC52905."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-28T12:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"25743","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/25743"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-1.ibm.com/support/docview.wss?uid=swg21268775"},{"name":"IC52905","tags":["vendor-advisory","x_refsource_AIXAPAR"],"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IC52905&apar=only"},{"name":"3184","tags":["third-party-advisory","x_refsource_SREASON"],"url":"http://securityreason.com/securityalert/3184"},{"tags":["x_refsource_MISC"],"url":"http://www.zerodayinitiative.com/advisories/ZDI-07-054.html"},{"name":"ADV-2007-3228","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/3228"},{"name":"26883","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/26883"},{"name":"ibm-tsm-cad-bo(36700)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/36700"},{"name":"38161","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://osvdb.org/38161"},{"name":"20070924 ZDI-07-054: IBM Tivoli Storage Manager Express CAD Service Buffer Overflow Vulnerability","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/480492"},{"name":"1018725","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id?1018725"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-4880","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Buffer overflow in the Client Acceptor Daemon (CAD), dsmcad.exe, in certain IBM Tivoli Storage Manager (TSM) clients 5.1 before 5.1.8.1, 5.2 before 5.2.5.2, 5.3 before 5.3.5.3, and 5.4 before 5.4.1.2 allows remote attackers to execute arbitrary code via crafted HTTP headers, aka IC52905."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"25743","refsource":"BID","url":"http://www.securityfocus.com/bid/25743"},{"name":"http://www-1.ibm.com/support/docview.wss?uid=swg21268775","refsource":"CONFIRM","url":"http://www-1.ibm.com/support/docview.wss?uid=swg21268775"},{"name":"IC52905","refsource":"AIXAPAR","url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IC52905&apar=only"},{"name":"3184","refsource":"SREASON","url":"http://securityreason.com/securityalert/3184"},{"name":"http://www.zerodayinitiative.com/advisories/ZDI-07-054.html","refsource":"MISC","url":"http://www.zerodayinitiative.com/advisories/ZDI-07-054.html"},{"name":"ADV-2007-3228","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/3228"},{"name":"26883","refsource":"SECUNIA","url":"http://secunia.com/advisories/26883"},{"name":"ibm-tsm-cad-bo(36700)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/36700"},{"name":"38161","refsource":"OSVDB","url":"http://osvdb.org/38161"},{"name":"20070924 ZDI-07-054: IBM Tivoli Storage Manager Express CAD Service Buffer Overflow Vulnerability","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/480492"},{"name":"1018725","refsource":"SECTRACK","url":"http://www.securitytracker.com/id?1018725"}]}}},"adp":[{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-07T15:08:33.875Z"},"title":"CVE Program Container","references":[{"name":"25743","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/25743"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-1.ibm.com/support/docview.wss?uid=swg21268775"},{"name":"IC52905","tags":["vendor-advisory","x_refsource_AIXAPAR","x_transferred"],"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IC52905&apar=only"},{"name":"3184","tags":["third-party-advisory","x_refsource_SREASON","x_transferred"],"url":"http://securityreason.com/securityalert/3184"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.zerodayinitiative.com/advisories/ZDI-07-054.html"},{"name":"ADV-2007-3228","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/3228"},{"name":"26883","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/26883"},{"name":"ibm-tsm-cad-bo(36700)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/36700"},{"name":"38161","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://osvdb.org/38161"},{"name":"20070924 ZDI-07-054: IBM Tivoli Storage Manager Express CAD Service Buffer Overflow Vulnerability","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/480492"},{"name":"1018725","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id?1018725"}]}]},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-4880","datePublished":"2007-09-28T00:00:00.000Z","dateReserved":"2007-09-13T00:00:00.000Z","dateUpdated":"2024-08-07T15:08:33.875Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"}