IBM TS4500 CLI tool Versions:  0.1.31 through 1.12.0.0 does not validate or improperly validates TLS certificate validation, which could allow an attacker to obtain sensitive information using man in the middle techniques.

Project Subscriptions

Vendors Products
Ts4500 Cli Tool Subscribe
Advisories

No advisories yet.

Fixes

Solution

Upgrade to fix pack version 1.12.0.2 or later, available from IBM Fix Central http://www-933.ibm.com/support/fixcentral/ .   All future releases will include the fix for this vulnerability.


Workaround

No workaround given by the vendor.

History

Wed, 29 Jul 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 28 Jul 2026 20:00:00 +0000

Type Values Removed Values Added
Description IBM TS4500 CLI tool Versions:  0.1.31 through 1.12.0.0 does not validate or improperly validates TLS certificate validation, which could allow an attacker to obtain sensitive information using man in the middle techniques.
Title TS4500 CLI tool addresses security vulnerability
First Time appeared Ibm
Ibm ts4500 Cli Tool
Weaknesses CWE-295
CPEs cpe:2.3:a:ibm:ts4500_cli_tool:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:ts4500_cli_tool:1.12.0.0:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm ts4500 Cli Tool
References
Metrics cvssV3_1

{'score': 5.9, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-07-29T13:56:30.108Z

Reserved: 2026-07-17T14:53:58.481Z

Link: CVE-2026-16107

cve-icon Vulnrichment

Updated: 2026-07-29T13:44:55.364Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-29T15:10:39Z

Weaknesses