AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2009-3518

HIGH · CVSS 9.3 EPSS 5.48%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2009-10-01 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 9.3. It may be remotely exploitable.

CVE
CVE-2009-3518
Severity
HIGH
CVSS
9.3
EPSS
5.48%

Original NVD Description

Argument injection vulnerability in the iim: URI handler in IBMIM.exe in IBM Installation Manager 1.3.2 and earlier, as used in IBM Rational Robot and Rational Team Concert, allows remote attackers to load arbitrary DLL files via the -vm option, as demonstrated by a reference to a UNC share pathname.