PT-2013-4065 · Ibm · Ibm Tivoli Monitoring+1
Published
2013-06-21
·
Updated
2017-08-29
·
CVE-2013-2961
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Tivoli Monitoring (ITM) versions 6.2.0 through 6.2.3 before FP3
IBM Application Manager for Smart Business version 1.2.1 before 1.2.1.0-TIV-IAMSB-FP0004
Description
The issue allows remote attackers to perform unspecified redirection of HTTP requests and bypass the proxy-server configuration via crafted HTTP traffic.
Recommendations
For IBM Tivoli Monitoring (ITM) versions 6.2.0 through 6.2.3 before FP3, apply FP3 or later to resolve the issue.
For IBM Application Manager for Smart Business version 1.2.1 before 1.2.1.0-TIV-IAMSB-FP0004, update to 1.2.1.0-TIV-IAMSB-FP0004 or later.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Application Manager For Smart Business
Ibm Tivoli Monitoring