← Back

CVE-2000-1239

nvd nist
Published: Dec 31, 2000Modified: Apr 16, 2026

JSON object

Loading...
9.0
Vector
AV:N/AC:L/Au:S/C:C/I:C/A:C
Exploitability: 8.0 / Impact: 10.0
Source: NVD

Description

The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, which allows remote authenticated users to bypass file permissions on Tivoli Endpoint Configuration data files via an unspecified manipulation of log files.

Affected (1)

1 product
Tivoli Management Framework
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 3.7.1

References (6)

Timeline

No history available yet.