CVE-2012-3305

EUVD-2012-3283
Directory traversal vulnerability in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.25, 8.0 before 8.0.0.5, and 8.5 before 8.5.0.1 allows remote attackers to overwrite arbitrary files via a crafted application file.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.4 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:N/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 45%
Affected Products (NVD)
VendorProductVersion
ibmwebsphere_application_server
6.1
ibmwebsphere_application_server
6.1.0
ibmwebsphere_application_server
6.1.0.0
ibmwebsphere_application_server
6.1.0.1
ibmwebsphere_application_server
6.1.0.2
ibmwebsphere_application_server
6.1.0.3
ibmwebsphere_application_server
6.1.0.4
ibmwebsphere_application_server
6.1.0.10
ibmwebsphere_application_server
6.1.0.11
ibmwebsphere_application_server
6.1.0.12
ibmwebsphere_application_server
6.1.0.13
ibmwebsphere_application_server
6.1.0.14
ibmwebsphere_application_server
6.1.0.15
ibmwebsphere_application_server
6.1.0.16
ibmwebsphere_application_server
6.1.0.17
ibmwebsphere_application_server
6.1.0.18
ibmwebsphere_application_server
6.1.0.19
ibmwebsphere_application_server
6.1.0.20
ibmwebsphere_application_server
6.1.0.21
ibmwebsphere_application_server
6.1.0.22
ibmwebsphere_application_server
6.1.0.23
ibmwebsphere_application_server
6.1.0.24
ibmwebsphere_application_server
6.1.0.25
ibmwebsphere_application_server
6.1.0.26
ibmwebsphere_application_server
6.1.0.27
ibmwebsphere_application_server
6.1.0.28
ibmwebsphere_application_server
6.1.0.29
ibmwebsphere_application_server
6.1.0.31
ibmwebsphere_application_server
6.1.0.32
ibmwebsphere_application_server
6.1.0.33
ibmwebsphere_application_server
6.1.0.34
ibmwebsphere_application_server
6.1.0.35
ibmwebsphere_application_server
6.1.0.36
ibmwebsphere_application_server
6.1.0.37
ibmwebsphere_application_server
6.1.0.38
ibmwebsphere_application_server
6.1.0.39
ibmwebsphere_application_server
6.1.0.41
ibmwebsphere_application_server
6.1.0.42
ibmwebsphere_application_server
6.1.0.43
ibmwebsphere_application_server
6.1.0.44
ibmwebsphere_application_server
6.1.0.45
ibmwebsphere_application_server
7.0
ibmwebsphere_application_server
7.0.0.1
ibmwebsphere_application_server
7.0.0.2
ibmwebsphere_application_server
7.0.0.10
ibmwebsphere_application_server
7.0.0.11
ibmwebsphere_application_server
7.0.0.12
ibmwebsphere_application_server
7.0.0.13
ibmwebsphere_application_server
7.0.0.14
ibmwebsphere_application_server
7.0.0.15
ibmwebsphere_application_server
7.0.0.16
ibmwebsphere_application_server
7.0.0.17
ibmwebsphere_application_server
7.0.0.18
ibmwebsphere_application_server
7.0.0.19
ibmwebsphere_application_server
7.0.0.21
ibmwebsphere_application_server
7.0.0.22
ibmwebsphere_application_server
7.0.0.23
ibmwebsphere_application_server
8.0
ibmwebsphere_application_server
8.0.0.0
ibmwebsphere_application_server
8.0.0.1
ibmwebsphere_application_server
8.0.0.2
ibmwebsphere_application_server
8.0.0.3
ibmwebsphere_application_server
8.0.0.4
ibmwebsphere_application_server
8.5.0.0
𝑥
= Vulnerable software versions