IBM InfoSphere BigInsights before 2.1.0.3 allows remote authenticated users to bypass intended file and directory restrictions, or access untrusted data or code, via crafted parameters in unspecified API calls.
References
Link | Resource |
---|---|
http://secunia.com/advisories/59676 | Broken Link |
http://secunia.com/advisories/59676 | Broken Link |
http://www.securityfocus.com/bid/68449 | Broken Link Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/68449 | Broken Link Third Party Advisory VDB Entry |
http://www-01.ibm.com/support/docview.wss?uid=swg21677445 | Broken Link Vendor Advisory |
http://www-01.ibm.com/support/docview.wss?uid=swg21677445 | Broken Link Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/84982 | Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/84982 | Third Party Advisory VDB Entry |
Configurations
History
19 Dec 2024, 18:25
Type | Values Removed | Values Added |
---|---|---|
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/84982 - Third Party Advisory, VDB Entry | |
References | () http://www-01.ibm.com/support/docview.wss?uid=swg21677445 - Broken Link, Vendor Advisory | |
References | () http://secunia.com/advisories/59676 - Broken Link | |
References | () http://www.securityfocus.com/bid/68449 - Broken Link, Third Party Advisory, VDB Entry |
28 Jun 2024, 17:38
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:ibm:infosphere_biginsights:2.1.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:1.1.0.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:1.3.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:1.1.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:2.0.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:1.2.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:1.3.0.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:2.1.0.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:infosphere_biginsights:1.4.0.0:*:*:*:*:*:*:* |
|
CWE | CWE-22 | |
CVSS |
v2 : v3 : |
v2 : 3.5
v3 : 6.5 |
References | (CONFIRM) http://www-01.ibm.com/support/docview.wss?uid=swg21677445 - Broken Link, Vendor Advisory | |
References | (SECUNIA) http://secunia.com/advisories/59676 - Broken Link | |
References | (BID) http://www.securityfocus.com/bid/68449 - Broken Link, Third Party Advisory, VDB Entry | |
References | (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/84982 - Third Party Advisory, VDB Entry |
Information
Published : 2014-07-07 11:01
Updated : 2025-02-12 19:28
NVD link : CVE-2013-3993
Mitre link : CVE-2013-3993
JSON object : View
Products Affected
ibm
- infosphere_biginsights
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')