CVE-2013-4061

IBM Rational Policy Tester 8.5 before 8.5.0.5 does not properly check authorization for changes to the set of authentication hosts, which allows remote authenticated users to perform spoofing attacks involving an HTTP redirect via unspecified vectors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:rational_policy_tester:8.5.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_policy_tester:8.5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_policy_tester:8.5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_policy_tester:8.5.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_policy_tester:8.5.0.4:*:*:*:*:*:*:*

History

21 Nov 2024, 01:54

Type Values Removed Values Added
References () http://www-01.ibm.com/support/docview.wss?uid=swg21648481 - () http://www-01.ibm.com/support/docview.wss?uid=swg21648481 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/86585 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/86585 -

Information

Published : 2013-09-09 01:55

Updated : 2024-11-21 01:54


NVD link : CVE-2013-4061

Mitre link : CVE-2013-4061

CVE.ORG link : CVE-2013-4061


JSON object : View

Products Affected

ibm

  • rational_policy_tester
CWE
CWE-287

Improper Authentication