PT-2013-4089 · Ibm · Ibm Aix+1

Published

2013-07-06

·

Updated

2017-09-19

·

CVE-2013-3005

CVSS v2.0

8.5

High

VectorAV:N/AC:M/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions IBM AIX versions 6.1 and 7.1 VIOS version 2.2.2.2-FP-26 SP-02
Description The issue allows remote authenticated users to bypass intended file-ownership restrictions and read or overwrite arbitrary files when RBAC is enabled.
Recommendations For IBM AIX versions 6.1 and 7.1, consider disabling RBAC until a patch is available to prevent the bypass of file-ownership restrictions. For VIOS version 2.2.2.2-FP-26 SP-02, restrict access to sensitive files to minimize the risk of exploitation until a fix is applied.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-3005

Affected Products

Ibm Aix
Vios