PT-2011-3083 · Ibm · Ibm Websphere Application Server
Javier Castro
+1
·
Publicado
2011-09-06
·
Atualizado
2017-08-17
·
CVE-2011-1359
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM WebSphere Application Server versions 6.1 before 6.1.0.41
IBM WebSphere Application Server versions 7.0 before 7.0.0.19
IBM WebSphere Application Server versions 8.0 before 8.0.0.1
Description
A directory traversal issue exists in the administration console, allowing remote attackers to read arbitrary files by including a .. (dot dot) in the URI.
Recommendations
For IBM WebSphere Application Server version 6.1 before 6.1.0.41, update to version 6.1.0.41 or later.
For IBM WebSphere Application Server version 7.0 before 7.0.0.19, update to version 7.0.0.19 or later.
For IBM WebSphere Application Server version 8.0 before 8.0.0.1, update to version 8.0.0.1 or later.
Correção
Path traversal
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Websphere Application Server