4.3
CVE-2013-4006
- EPSS 1.31%
- Veröffentlicht 18.11.2013 05:23:57
- Zuletzt bearbeitet 29.04.2026 01:13:23
- Erkennungen
IBM WebSphere Application Server (WAS) Liberty Profile 8.5 before 8.5.5.1 uses weak permissions for unspecified files, which allows local users to obtain sensitive information via standard filesystem operations.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Websphere Application Server Version 8.5.0.0 Update - Edition liberty_profile
Ibm ≫ Websphere Application Server Version 8.5.0.1 Update - Edition liberty_profile
Ibm ≫ Websphere Application Server Version 8.5.0.2 Update - Edition liberty_profile
Ibm ≫ Websphere Application Server Version 8.5.5.0 Update - Edition liberty_profile
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.31% | 0.67 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:P/I:N/A:N
|
http://www-01.ibm.com/support/docview.wss?&uid=swg21651880
http://www-01.ibm.com/support/docview.wss?uid=swg1PM90472
https://exchange.xforce.ibmcloud.com/vulnerabilities/85273