PT-2014-3174 · Ibm · Ibm Websphere Portal

Published

2014-02-14

·

Updated

2017-08-29

·

CVE-2013-6722

CVSS v2.0

5.8

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions IBM WebSphere Portal versions 7.x through 7.0.0.2 CF26 and 8.x through 8.0.0.1 CF08
Description The issue is related to an unrestricted file upload vulnerability in the Registration/Edit My Profile portlet. This vulnerability can be exploited by remote attackers to cause a denial of service or modify data.
Recommendations For IBM WebSphere Portal versions 7.x through 7.0.0.2 CF26, update to version 7.0.0.2 CF27 or later. For IBM WebSphere Portal versions 8.x through 8.0.0.1 CF08, update to version 8.0.0.1 CF09 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2013-6722

Affected Products

Ibm Websphere Portal