PT-2014-3174 · Ibm · Ibm Websphere Portal
Published
2014-02-14
·
Updated
2017-08-29
·
CVE-2013-6722
CVSS v2.0
5.8
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
IBM WebSphere Portal versions 7.x through 7.0.0.2 CF26 and 8.x through 8.0.0.1 CF08
Description
The issue is related to an unrestricted file upload vulnerability in the Registration/Edit My Profile portlet. This vulnerability can be exploited by remote attackers to cause a denial of service or modify data.
Recommendations
For IBM WebSphere Portal versions 7.x through 7.0.0.2 CF26, update to version 7.0.0.2 CF27 or later.
For IBM WebSphere Portal versions 8.x through 8.0.0.1 CF08, update to version 8.0.0.1 CF09 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Websphere Portal