4.3
CVE-2013-5454
- EPSS 0.23%
- Published 18.11.2013 03:55:06
- Last modified 11.04.2025 00:51:21
- Source psirt@us.ibm.com
- Teams watchlist Login
- Open Login
IBM WebSphere Portal 6.0 through 6.0.1.7, 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0 through 7.0.0.2 CF25, and 8.0 through 8.0.0.1 CF08 allows remote attackers to read arbitrary files via a modified URL.
Data is provided by the National Vulnerability Database (NVD)
Ibm ≫ Websphere Portal Version6.0.0.0
Ibm ≫ Websphere Portal Version6.0.0.1
Ibm ≫ Websphere Portal Version6.0.1.0
Ibm ≫ Websphere Portal Version6.0.1.1
Ibm ≫ Websphere Portal Version6.0.1.2
Ibm ≫ Websphere Portal Version6.0.1.3
Ibm ≫ Websphere Portal Version6.0.1.4
Ibm ≫ Websphere Portal Version6.0.1.5
Ibm ≫ Websphere Portal Version6.0.1.6
Ibm ≫ Websphere Portal Version6.1
Ibm ≫ Websphere Portal Version6.1.0.0
Ibm ≫ Websphere Portal Version6.1.0.1
Ibm ≫ Websphere Portal Version6.1.0.2
Ibm ≫ Websphere Portal Version6.1.0.3
Ibm ≫ Websphere Portal Version6.1.0.4
Ibm ≫ Websphere Portal Version6.1.0.5
Ibm ≫ Websphere Portal Version6.1.5.0
Ibm ≫ Websphere Portal Version6.1.5.1
Ibm ≫ Websphere Portal Version6.1.5.2
Ibm ≫ Websphere Portal Version6.1.5.3
Ibm ≫ Websphere Portal Version7.0.0.0
Ibm ≫ Websphere Portal Version7.0.0.1
Ibm ≫ Websphere Portal Version7.0.0.2
Ibm ≫ Websphere Portal Version8.0
Ibm ≫ Websphere Portal Version8.0.0.0
Ibm ≫ Websphere Portal Version8.0.0.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.23% | 0.433 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:P/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.