IBM Tivoli Storage Manager Operations Center could allow an authenticated attacker to enable or disable the application's REST API, which may let the attacker violate security policy.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/95091 | vdb entry third party advisory |
http://www.ibm.com/support/docview.wss?uid=swg21995754 | patch vendor advisory |