CVE-2013-6730
04.03.2014, 22:55
IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.0.0.x before 7.0.0.2 CF27, and 8.0.0.x before 8.0.0.1 CF10, when the wcm.path.traversal.security setting is enabled, allows remote attackers to bypass intended read restrictions on an item by accessing that item within search results.Enginsight
| Vendor | Product | Version |
|---|---|---|
| ibm | websphere_portal | 6.1.0.0 |
| ibm | websphere_portal | 6.1.0.1 |
| ibm | websphere_portal | 6.1.0.2 |
| ibm | websphere_portal | 6.1.0.3 |
| ibm | websphere_portal | 6.1.0.4 |
| ibm | websphere_portal | 6.1.0.5 |
| ibm | websphere_portal | 6.1.0.6 |
| ibm | websphere_portal | 6.1.5.0 |
| ibm | websphere_portal | 6.1.5.1 |
| ibm | websphere_portal | 6.1.5.2 |
| ibm | websphere_portal | 6.1.5.3 |
| ibm | websphere_portal | 7.0.0.0 |
| ibm | websphere_portal | 7.0.0.1 |
| ibm | websphere_portal | 7.0.0.2 |
| ibm | websphere_portal | 8.0.0.0 |
| ibm | websphere_portal | 8.0.0.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References