cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2015-4950,https://securityvulnerability.io/vulnerability/CVE-2015-4950,,"The mailbox-restore feature in IBM Tivoli Storage Manager for Mail: Data Protection for Microsoft Exchange Server 6.1 before 6.1.3.6, 6.3 before 6.3.1.3, 6.4 before 6.4.1.4, and 7.1 before 7.1.0.2; Tivoli Storage FlashCopy Manager: FlashCopy Manager for Microsoft Exchange Server 2.1, 2.2, 3.1 before 3.1.1.5, 3.2 before 3.2.1.7, and 4.1 before 4.1.1; and Tivoli Storage Manager FastBack for Microsoft Exchange 6.1 before 6.1.5.4 does not ensure that the correct mailbox is selected, which allows remote authenticated users to obtain sensitive information via a duplicate alias name.",IBM,"Tivoli Storage Flashcopy Manager For Microsoft Exchange Server,Tivoli Storage Manager For Mail Data Protection For Microsoft Exchange Server,Tivoli Storage Fastback For Microsoft Exchange",,,0.001180000021122396,false,,false,false,false,,,false,false,,2015-08-23T14:00:00.000Z,0 CVE-2015-4949,https://securityvulnerability.io/vulnerability/CVE-2015-4949,,"IBM Tivoli Storage Manager for Databases: Data Protection for Microsoft SQL Server 7.1 before 7.1.2, Tivoli Storage Manager for Mail: Data Protection for Microsoft Exchange Server 7.1 before 7.1.2, and Tivoli Storage FlashCopy Manager 4.1 before 4.1.2 place cleartext passwords in exception messages, which allows physically proximate attackers to obtain sensitive information by reading GUI pop-up windows, a different vulnerability than CVE-2015-6557.",IBM,"Tivoli Storage Manager For Databases Data Protection For Microsoft Sql Server,Tivoli Storage Manager For Mail Data Protection For Microsoft Exchange Server,Tivoli Storage Flashcopy Manager",,,0.0005099999834783375,false,,false,false,false,,,false,false,,2015-08-23T01:00:00.000Z,0 CVE-2015-6557,https://securityvulnerability.io/vulnerability/CVE-2015-6557,,"IBM Tivoli Storage Manager for Databases: Data Protection for Microsoft SQL Server 5.5 before 5.5.6.1, 6.3 before 6.3.1.5, 6.4 before 6.4.1.7, and 7.1 before 7.1.2; Tivoli Storage Manager for Mail: Data Protection for Microsoft Exchange Server 5.5 before 5.5.1.1, 6.1 before 6.1.3.7, 6.3 before 6.3.1.5, 6.4 before 6.4.1.7, and 7.1 before 7.1.2; and Tivoli Storage FlashCopy Manager 3.1 before 3.1.1.5, 3.2 before 3.2.1.7, and 4.1 before 4.1.2, when application tracing is used, place cleartext passwords in exception messages, which allows physically proximate attackers to obtain sensitive information by reading trace output, a different vulnerability than CVE-2015-4949.",IBM,"Tivoli Storage Manager For Mail Data Protection For Microsoft Exchange Server,Tivoli Storage Manager For Databases Data Protection For Microsoft Sql Server,Tivoli Storage Flashcopy Manager",,,0.0004400000034365803,false,,false,false,false,,,false,false,,2015-08-23T01:00:00.000Z,0