Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2013-2988

Опубликовано: 27 авг. 2013
Источник: nvd
CVSS2: 2.6
EPSS Низкий

Описание

Absolute path traversal vulnerability in the server in IBM Cognos Business Intelligence (BI) 8.4.1, 10.1, 10.1.1, 10.2, and 10.2.1 allows remote authenticated users to read files by leveraging the Report Author privilege, a different vulnerability than CVE-2013-2978.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:ibm:cognos_business_intelligence:8.4.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_business_intelligence:10.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_business_intelligence:10.1.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_business_intelligence:10.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_business_intelligence:10.2.1:*:*:*:*:*:*:*

EPSS

Процентиль: 41%
0.00191
Низкий

2.6 Low

CVSS2

Дефекты

CWE-22

Связанные уязвимости

github
больше 3 лет назад

Absolute path traversal vulnerability in the server in IBM Cognos Business Intelligence (BI) 8.4.1, 10.1, 10.1.1, 10.2, and 10.2.1 allows remote authenticated users to read files by leveraging the Report Author privilege, a different vulnerability than CVE-2013-2978.

EPSS

Процентиль: 41%
0.00191
Низкий

2.6 Low

CVSS2

Дефекты

CWE-22