Argument injection vulnerability in the iim: URI handler in IBMIM.exe in IBM Installation Manager 1.3.2 and earlier, as used in IBM Rational Robot and Rational Team Concert, allows remote attackers to load arbitrary DLL files via the -vm option, as demonstrated by a reference to a UNC share pathname.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2009-10-01T15:00:00Z
Updated: 2024-09-16T23:27:10.464Z
Reserved: 2009-10-01T00:00:00Z
Link: CVE-2009-3518
Vulnrichment
No data.
NVD
Status : Modified
Published: 2009-10-01T15:30:00.377
Modified: 2024-11-21T01:07:33.617
Link: CVE-2009-3518
Redhat
No data.