Описание
IBM WebSphere Portal 6.0 through 6.0.1.7, 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0 through 7.0.0.2 CF25, and 8.0 through 8.0.0.1 CF08 allows remote attackers to read arbitrary files via a modified URL.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:ibm:websphere_portal:6.0.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.0.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.0.1.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.0.1.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.0.1.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.0.1.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.0.1.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.0.1.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.0.1.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.1.0.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.1.0.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.1.5.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.1.5.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.1.5.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:6.1.5.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:7.0.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:7.0.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:7.0.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:8.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:8.0.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_portal:8.0.0.1:*:*:*:*:*:*:*
EPSS
Процентиль: 46%
0.00234
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-200
Связанные уязвимости
github
больше 3 лет назад
IBM WebSphere Portal 6.0 through 6.0.1.7, 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0 through 7.0.0.2 CF25, and 8.0 through 8.0.0.1 CF08 allows remote attackers to read arbitrary files via a modified URL.
EPSS
Процентиль: 46%
0.00234
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-200