CVE-2013-3993

IBM InfoSphere BigInsights before 2.1.0.3 allows remote authenticated users to bypass intended file and directory restrictions, or access untrusted data or code, via crafted parameters in unspecified API calls.
References
Link Resource
http://secunia.com/advisories/59676 Broken Link
http://www-01.ibm.com/support/docview.wss?uid=swg21677445 Broken Link Vendor Advisory
http://www.securityfocus.com/bid/68449 Broken Link Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/84982 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:infosphere_biginsights:*:*:*:*:*:*:*:*

History

28 Jun 2024, 17:38

Type Values Removed Values Added
CWE CWE-264 CWE-22
CVSS v2 : 3.5
v3 : unknown
v2 : 3.5
v3 : 6.5
References () http://secunia.com/advisories/59676 - () http://secunia.com/advisories/59676 - Broken Link
References () http://www-01.ibm.com/support/docview.wss?uid=swg21677445 - Vendor Advisory () http://www-01.ibm.com/support/docview.wss?uid=swg21677445 - Broken Link, Vendor Advisory
References () http://www.securityfocus.com/bid/68449 - () http://www.securityfocus.com/bid/68449 - Broken Link, Third Party Advisory, VDB Entry
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/84982 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/84982 - Third Party Advisory, VDB Entry
CPE cpe:2.3:a:ibm:infosphere_biginsights:1.3.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_biginsights:1.2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_biginsights:1.1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_biginsights:1.3.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_biginsights:1.1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_biginsights:1.4.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_biginsights:2.1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_biginsights:2.0.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_biginsights:1.1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_biginsights:2.1.0.0:*:*:*:*:*:*:*

Information

Published : 2014-07-07 11:01

Updated : 2024-06-28 17:38


NVD link : CVE-2013-3993

Mitre link : CVE-2013-3993

CVE.ORG link : CVE-2013-3993


JSON object : View

Products Affected

ibm

  • infosphere_biginsights
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')