CVE-2013-0544Path Traversal in IBM Websphere Application Server

CWE-22Path Traversal5 documents4 sources
Severity
4.0MEDIUMNVD
EPSS
1.1%
top 22.32%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 24
Latest updateMay 5

Description

Directory traversal vulnerability in the Administrative Console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 on Linux and UNIX allows remote authenticated users to modify data via unspecified vectors.

CVSS vector

AV:N/AC:L/C:N/I:P/A:NExploitability: 8.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-63h9-j7qx-8xx4: Directory traversal vulnerability in the Administrative Console in IBM WebSphere Application Server (WAS) 62022-05-05
CVEList
CVE-2013-0544: Directory traversal vulnerability in the Administrative Console in IBM WebSphere Application Server (WAS) 62013-04-24

💬Community

2
Bugzilla
CVE-2012-5604 rubygem-ldap_fluff: CloudForms authentication bypass when handling anonymous LDAP bind2012-11-30
Bugzilla
CVE-2012-5603 CloudForms Katello: lack of authorization in proxies_controller.rb2012-11-30
CVE-2013-0544 — Path Traversal in IBM | cvebase