← back
CVE-2007-4880

CVE-2007-4880

60Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 76%
from disclosure to weapon29 days
Published on NVDSep 28
1st PoC+29d
metasploitSep 24
exploitation probability
76%top 1% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Buffer overflow in the Client Acceptor Daemon (CAD), dsmcad.exe, in certain IBM Tivoli Storage Manager (TSM) clients 5.1 before 5.1.8.1, 5.2 before 5.2.5.2, 5.3 before 5.3.5.3, and 5.4 before 5.4.1.2 allows remote attackers to execute arbitrary code via crafted HTTP headers, aka IC52905.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.