CVE-2012-4834

Directory traversal vulnerability in LayerLoader.jsp in the theme component in IBM WebSphere Portal 7.0.0.1 and 7.0.0.2 before CF19 and 8.0 before CF03 allows remote attackers to read arbitrary files via a crafted URI.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:N/A:N
ibmCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 81%
VendorProductVersion
ibmwebsphere_portal
7.0.0.1
ibmwebsphere_portal
7.0.0.1:cf002
ibmwebsphere_portal
7.0.0.1:cf003
ibmwebsphere_portal
7.0.0.1:cf004
ibmwebsphere_portal
7.0.0.1:cf005
ibmwebsphere_portal
7.0.0.1:cf006
ibmwebsphere_portal
7.0.0.1:cf007
ibmwebsphere_portal
7.0.0.1:cf008
ibmwebsphere_portal
7.0.0.1:cf009
ibmwebsphere_portal
7.0.0.1:cf010
ibmwebsphere_portal
7.0.0.1:cf011
ibmwebsphere_portal
7.0.0.1:cf012
ibmwebsphere_portal
7.0.0.1:cf013
ibmwebsphere_portal
7.0.0.1:cf014
ibmwebsphere_portal
7.0.0.1:cf015
ibmwebsphere_portal
7.0.0.1:cf016
ibmwebsphere_portal
7.0.0.1:cf017
ibmwebsphere_portal
7.0.0.1:cf018
ibmwebsphere_portal
7.0.0.2
ibmwebsphere_portal
7.0.0.2:cf002
ibmwebsphere_portal
7.0.0.2:cf003
ibmwebsphere_portal
7.0.0.2:cf004
ibmwebsphere_portal
7.0.0.2:cf005
ibmwebsphere_portal
7.0.0.2:cf006
ibmwebsphere_portal
7.0.0.2:cf007
ibmwebsphere_portal
7.0.0.2:cf008
ibmwebsphere_portal
7.0.0.2:cf009
ibmwebsphere_portal
7.0.0.2:cf010
ibmwebsphere_portal
7.0.0.2:cf011
ibmwebsphere_portal
7.0.0.2:cf012
ibmwebsphere_portal
7.0.0.2:cf013
ibmwebsphere_portal
7.0.0.2:cf014
ibmwebsphere_portal
7.0.0.2:cf015
ibmwebsphere_portal
7.0.0.2:cf016
ibmwebsphere_portal
7.0.0.2:cf017
ibmwebsphere_portal
7.0.0.2:cf018
ibmwebsphere_portal
8.0.0.0
ibmwebsphere_portal
8.0.0.0:cf01
ibmwebsphere_portal
8.0.0.0:cf02
𝑥
= Vulnerable software versions