CVE-2011-1389

EUVD-2011-1396
Multiple directory traversal vulnerabilities in the vendor daemon in Rational Common Licensing in Telelogic License Server 2.0, Rational License Server 7.x, and ibmratl in IBM Rational License Key Server (RLKS) 8.0 through 8.1.2 allow remote attackers to execute arbitrary code via vectors related to save, rename, and load operations on log files.  NOTE: this might overlap CVE-2011-4135.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 90%
Affected Products (NVD)
VendorProductVersion
ibmrational_license_key_server
8.0
ibmrational_license_key_server
8.1
ibmrational_license_key_server
8.1.1
ibmrational_license_key_server
8.1.2
ibmrational_license_server
7.0
ibmrational_license_server
7.1
ibmrational_license_server
7.5
ibmtelelogic_license_server
2.0
𝑥
= Vulnerable software versions