4
CVE-2013-4034
- EPSS 5.43%
- Veröffentlicht 18.11.2013 03:55:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle psirt@us.ibm.com
- CVE-Watchlists
- Unerledigt
IBM Cognos Business Intelligence 8.4.1 before IF3, 10.1.0 before IF4, 10.1.1 before IF4, 10.2.0 before IF4, 10.2.1 before IF2, and 10.2.1.1 before IF1 allows remote authenticated users to read arbitrary files via an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Cognos Business Intelligence Version8.4.1
Ibm ≫ Cognos Business Intelligence Version10.1
Ibm ≫ Cognos Business Intelligence Version10.1.1
Ibm ≫ Cognos Business Intelligence Version10.2
Ibm ≫ Cognos Business Intelligence Version10.2.1
Ibm ≫ Cognos Business Intelligence Version10.2.1.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 5.43% | 0.898 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4 | 8 | 2.9 |
AV:N/AC:L/Au:S/C:P/I:N/A:N
|