IBM Security Key Lifecycle Manager(前称Tivoli Key Lifecycle Manager)是美国IBM公司的一套密钥生命周期管理软件。该软件为存储设备提供密钥存储、密钥维护和密钥生命周期管理等功能。 IBM Security Key Lifecycle Manager 2.5版本至2.5.0.8版本、2.6版本至2.6.0.3版本和2.7版本至2.7.0.2版本中存在路径遍历漏洞。远程攻击者可通过发送带有‘..’序列的特制URL请求利用该漏洞查看系统上的任意文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Security Key Lifecycle Manager | 2.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2017-1493 | IBM UrbanCode Deploy 安全漏洞 | |
| CVE-2017-1612 | IBM MQ service trace模块权限许可和访问控制问题漏洞 | |
| CVE-2017-1666 | IBM Security Key Lifecycle Manager 安全漏洞 | |
| CVE-2017-1668 | IBM Security Key Lifecycle Manager 安全漏洞 | |
| CVE-2017-1670 | IBM Security Key Lifecycle Manager SQL注入漏洞 |
No comments yet