Описание
IBM Case Manager 5.2.0.0, 5.2.0.4, 5.2.1.0, 5.2.1.7, 5.3.0.0, and 5.3.3.0 is vulnerable to a "zip slip" vulnerability which could allow a remote attacker to execute code using directory traversal techniques. IBM X-Force ID: 151970.
Ссылки
- MitigationVendor Advisory
- Third Party AdvisoryVDB Entry
- VDB EntryVendor Advisory
- MitigationVendor Advisory
- Third Party AdvisoryVDB Entry
- VDB EntryVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:ibm:case_manager:5.2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:case_manager:5.2.0.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:case_manager:5.2.1.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:case_manager:5.2.1.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:case_manager:5.3.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:case_manager:5.3.3.0:*:*:*:*:*:*:*
EPSS
Процентиль: 75%
0.00858
Низкий
4.8 Medium
CVSS3
7.8 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-22
Связанные уязвимости
CVSS3: 7.8
github
больше 3 лет назад
IBM Case Manager 5.2.0.0, 5.2.0.4, 5.2.1.0, 5.2.1.7, 5.3.0.0, and 5.3.3.0 is vulnerable to a "zip slip" vulnerability which could allow a remote attacker to execute code using directory traversal techniques. IBM X-Force ID: 151970.
EPSS
Процентиль: 75%
0.00858
Низкий
4.8 Medium
CVSS3
7.8 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-22