IBM InfoSphere BigInsights before 2.1.0.3 allows remote authenticated users to bypass intended file and directory restrictions, or access untrusted data or code, via crafted parameters in unspecified API calls.
References
Link | Resource |
---|---|
http://secunia.com/advisories/59676 | Broken Link |
http://www-01.ibm.com/support/docview.wss?uid=swg21677445 | Broken Link Vendor Advisory |
http://www.securityfocus.com/bid/68449 | Broken Link Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/84982 | Third Party Advisory VDB Entry |
http://secunia.com/advisories/59676 | Broken Link |
http://www-01.ibm.com/support/docview.wss?uid=swg21677445 | Broken Link Vendor Advisory |
http://www.securityfocus.com/bid/68449 | Broken Link Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/84982 | Third Party Advisory VDB Entry |
Configurations
History
21 Nov 2024, 01:54
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/59676 - Broken Link | |
References | () http://www-01.ibm.com/support/docview.wss?uid=swg21677445 - Broken Link, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/68449 - Broken Link, Third Party Advisory, VDB Entry | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/84982 - Third Party Advisory, VDB Entry |
28 Jun 2024, 17:38
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-22 | |
CVSS |
v2 : v3 : |
v2 : 3.5
v3 : 6.5 |
References | () http://secunia.com/advisories/59676 - Broken Link | |
References | () http://www-01.ibm.com/support/docview.wss?uid=swg21677445 - Broken Link, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/68449 - Broken Link, Third Party Advisory, VDB Entry | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/84982 - Third Party Advisory, VDB Entry | |
CPE | cpe:2.3:a:ibm:infosphere_biginsights:1.2.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:1.1.0.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:1.3.0.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:1.1.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:1.4.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:2.1.0.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:2.0.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:1.1.0.2:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:2.1.0.0:*:*:*:*:*:*:* |
Information
Published : 2014-07-07 11:01
Updated : 2024-11-21 01:54
NVD link : CVE-2013-3993
Mitre link : CVE-2013-3993
CVE.ORG link : CVE-2013-3993
JSON object : View
Products Affected
ibm
- infosphere_biginsights
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')