CVE-2012-4834
30.11.2012, 19:55
Directory traversal vulnerability in LayerLoader.jsp in the theme component in IBM WebSphere Portal 7.0.0.1 and 7.0.0.2 before CF19 and 8.0 before CF03 allows remote attackers to read arbitrary files via a crafted URI.
Vendor | Product | Version |
---|---|---|
ibm | websphere_portal | 7.0.0.1 |
ibm | websphere_portal | 7.0.0.1:cf002 |
ibm | websphere_portal | 7.0.0.1:cf003 |
ibm | websphere_portal | 7.0.0.1:cf004 |
ibm | websphere_portal | 7.0.0.1:cf005 |
ibm | websphere_portal | 7.0.0.1:cf006 |
ibm | websphere_portal | 7.0.0.1:cf007 |
ibm | websphere_portal | 7.0.0.1:cf008 |
ibm | websphere_portal | 7.0.0.1:cf009 |
ibm | websphere_portal | 7.0.0.1:cf010 |
ibm | websphere_portal | 7.0.0.1:cf011 |
ibm | websphere_portal | 7.0.0.1:cf012 |
ibm | websphere_portal | 7.0.0.1:cf013 |
ibm | websphere_portal | 7.0.0.1:cf014 |
ibm | websphere_portal | 7.0.0.1:cf015 |
ibm | websphere_portal | 7.0.0.1:cf016 |
ibm | websphere_portal | 7.0.0.1:cf017 |
ibm | websphere_portal | 7.0.0.1:cf018 |
ibm | websphere_portal | 7.0.0.2 |
ibm | websphere_portal | 7.0.0.2:cf002 |
ibm | websphere_portal | 7.0.0.2:cf003 |
ibm | websphere_portal | 7.0.0.2:cf004 |
ibm | websphere_portal | 7.0.0.2:cf005 |
ibm | websphere_portal | 7.0.0.2:cf006 |
ibm | websphere_portal | 7.0.0.2:cf007 |
ibm | websphere_portal | 7.0.0.2:cf008 |
ibm | websphere_portal | 7.0.0.2:cf009 |
ibm | websphere_portal | 7.0.0.2:cf010 |
ibm | websphere_portal | 7.0.0.2:cf011 |
ibm | websphere_portal | 7.0.0.2:cf012 |
ibm | websphere_portal | 7.0.0.2:cf013 |
ibm | websphere_portal | 7.0.0.2:cf014 |
ibm | websphere_portal | 7.0.0.2:cf015 |
ibm | websphere_portal | 7.0.0.2:cf016 |
ibm | websphere_portal | 7.0.0.2:cf017 |
ibm | websphere_portal | 7.0.0.2:cf018 |
ibm | websphere_portal | 8.0.0.0 |
ibm | websphere_portal | 8.0.0.0:cf01 |
ibm | websphere_portal | 8.0.0.0:cf02 |
𝑥
= Vulnerable software versions
References