PT-2013-2364 · Ibm · Ibm Netezza Performance Portal

Published

2013-04-05

·

Updated

2017-08-29

·

CVE-2013-0470

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Netezza Performance Portal version 1.0.2
Description The issue allows remote authenticated users to list application directories containing asset files by making a direct request to a directory URI. For example, this could be used to list image files.
Recommendations For IBM Netezza Performance Portal version 1.0.2, consider restricting access to directory URIs to prevent unauthorized listing of application directories.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-0470

Affected Products

Ibm Netezza Performance Portal