PT-2011-2393 · Ibm · Webseal+1
Published
2011-01-19
·
Updated
2017-08-17
·
CVE-2011-0494
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Tivoli Access Manager for e-business versions 5.1 before 5.1.0.39-TIV-AWS-IF0040
IBM Tivoli Access Manager for e-business versions 6.0 before 6.0.0.25-TIV-AWS-IF0026
IBM Tivoli Access Manager for e-business versions 6.1.0 before 6.1.0.5-TIV-AWS-IF0006
IBM Tivoli Access Manager for e-business versions 6.1.1 before 6.1.1-TIV-AWS-FP0001
Description
The issue is related to a directory traversal vulnerability in WebSEAL. The impact and attack vectors of this issue are not specified.
Recommendations
For versions 5.1 before 5.1.0.39-TIV-AWS-IF0040, update to version 5.1.0.39-TIV-AWS-IF0040 or later.
For versions 6.0 before 6.0.0.25-TIV-AWS-IF0026, update to version 6.0.0.25-TIV-AWS-IF0026 or later.
For versions 6.1.0 before 6.1.0.5-TIV-AWS-IF0006, update to version 6.1.0.5-TIV-AWS-IF0006 or later.
For versions 6.1.1 before 6.1.1-TIV-AWS-FP0001, update to version 6.1.1-TIV-AWS-FP0001 or later.
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Tivoli Access Manager For E-Business
Webseal