← Vulnerability feed

Vulnerability record · CVE-2009-1521 · published 5 May 2009

CVE-2009-1521: Ibm tivoli storage manager client vulnerability

Ibm · Tivoli Storage Manager Client

Unspecified vulnerability in the Java GUI in the IBM Tivoli Storage Manager (TSM) client 5.2.0.0 through 5.2.5.3, 5.3.0.0 through 5.3.6.5, 5.4.0.0 through 5.4.2.6, and 5.5.0.0 through 5.5.1.17, and the TSM Express client 5.3.3.0 through 5.3.6.5, allows attackers to read or modify arbitrary files via unknown vectors.

7.5 CVSS 2.0 High EPSS 1.7% · top 24.2%
7.5CVSS 2.0 base score
1.7%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
10References
16 Jun 2026Last modified by NVD

Description

Unspecified vulnerability in the Java GUI in the IBM Tivoli Storage Manager (TSM) client 5.2.0.0 through 5.2.5.3, 5.3.0.0 through 5.3.6.5, 5.4.0.0 through 5.4.2.6, and 5.5.0.0 through 5.5.1.17, and the TSM Express client 5.3.3.0 through 5.3.6.5, allows attackers to read or modify arbitrary files via unknown vectors.

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2009-1521 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2008-4828IBM Tivoli Storage Manager Remote Agent stack buffer overflowsThe Remote Agent Service (dsmagent.exe) in IBM Tivoli Storage Manager client and TSM Express client contains multiple stack-based buffer overflows. A…EPSS 71%analysed10.0CVE-2009-1520Ibm tivoli storage manager client memory buffer overflow vulnerabilityBuffer overflow in the Web GUI in the IBM Tivoli Storage Manager (TSM) client 5.1.0.0 through 5.1.8.2, 5.2.0.0 through 5.2.5.3, 5.3.0.0 through 5.3.6…EPSS 3.3%10.0CVE-2008-4563Ibm tivoli storage manager memory buffer overflow vulnerabilityHeap-based buffer overflow in adsmdll.dll 5.3.7.7296, as used by the daemon (dsmsvc.exe) in the backup server in IBM Tivoli Storage Manager (TSM) Exp…EPSS 29%10.0CVE-2008-4801Ibm tivoli storage manager client memory buffer overflow vulnerabilityHeap-based buffer overflow in the Data Protection for SQL CAD service (aka dsmcat.exe) in the Client Acceptor Daemon (CAD) and the scheduler in the B…EPSS 11%10.0CVE-2008-0247Ibm tivoli storage manager express memory buffer overflow vulnerabilityHeap-based buffer overflow in the Express Backup Server service (dsmsvc.exe) in IBM Tivoli Storage Manager (TSM) Express 5.3 before 5.3.7.3 allows re…EPSS 8.5%10.0CVE-2007-4880IBM Tivoli Storage Manager Client CAD Buffer Overflow via HTTP HeadersThe Client Acceptor Daemon (dsmcad.exe) in certain IBM Tivoli Storage Manager clients contains a buffer overflow that can be triggered by crafted HTT…EPSS 76%analysed7.1CVE-2009-1522Ibm tivoli storage manager client vulnerabilityThe IBM Tivoli Storage Manager (TSM) client 5.5.0.0 through 5.5.1.17 on AIX and Windows, when SSL is used, allows remote attackers to conduct unspeci…EPSS 2.1%5.0CVE-2007-5022Ibm tivoli storage manager client information exposure vulnerabilityUnspecified vulnerability in certain IBM Tivoli Storage Manager (TSM) clients 5.1 before 5.1.8.1, 5.2 before 5.2.5.2, 5.3 before 5.3.5.3, and 5.4 bef…EPSS 2.0%

Source: NIST National Vulnerability Database (record CVE-2009-1521), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.