PT-2013-5994 · Ibm · Ibm Websphere Portal

Published

2013-12-22

·

Updated

2017-08-29

·

CVE-2013-6316

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM WebSphere Portal versions 7.0.0.x through 7.0.0.2 CF25 IBM WebSphere Portal versions 8.0.0.x through 8.0.0.0 CF08
Description The issue arises from improper handling of content-selection changes during Taxonomy component rendering. This allows remote attackers to obtain sensitive property information by leveraging an error in a Web Content Manager (WCM) context processor.
Recommendations For IBM WebSphere Portal versions 7.0.0.x through 7.0.0.2 CF25, update to version 7.0.0.2 CF26 or later. For IBM WebSphere Portal versions 8.0.0.x through 8.0.0.0 CF08, update to version 8.0.0.1 CF09 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-6316

Affected Products

Ibm Websphere Portal