CVE-2012-3305Path Traversal in IBM Websphere Application Server

CWE-22Path Traversal3 documents3 sources
Severity
6.4MEDIUMNVD
EPSS
0.2%
top 53.80%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 25
Latest updateMay 17

Description

Directory traversal vulnerability in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.25, 8.0 before 8.0.0.5, and 8.5 before 8.5.0.1 allows remote attackers to overwrite arbitrary files via a crafted application file.

CVSS vector

AV:N/AC:L/C:N/I:P/A:PExploitability: 10.0 | Impact: 4.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-x6r5-6r34-p24j: Directory traversal vulnerability in IBM WebSphere Application Server (WAS) 62022-05-17
CVEList
CVE-2012-3305: Directory traversal vulnerability in IBM WebSphere Application Server (WAS) 62012-09-25
CVE-2012-3305 — Path Traversal in IBM | cvebase