CVE-2013-4044Sensitive Information Exposure in IBM Spss Collaboration AND Deployment Services

Severity
4.0MEDIUMNVD
EPSS
0.2%
top 60.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 21
Latest updateMay 17

Description

IBM SPSS Collaboration and Deployment Services 4.2.1 before 4.2.1.3 IF3 and 5.0 before FP3 allows remote authenticated users to read application log files via a direct HTTP request.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 8.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-jj5r-5hhq-fx7r: IBM SPSS Collaboration and Deployment Services 42022-05-17
CVEList
CVE-2013-4044: IBM SPSS Collaboration and Deployment Services 42013-12-21
CVE-2013-4044 — Sensitive Information Exposure in IBM | cvebase