CVE-2013-0465
Unspecified vulnerability in the IBM WebSphere Cast Iron physical and virtual appliance 6.0 and 6.1 before 6.1.0.15 and 6.3 before 6.3.0.1, when LDAP authentication is enabled, allows remote attackers to obtain sensitive information, modify data, or…
Does this matter?
Lower severity and a low EPSS score (0.57%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in the IBM WebSphere Cast Iron physical and virtual appliance 6.0 and 6.1 before 6.1.0.15 and 6.3 before 6.3.0.1, when LDAP authentication is enabled, allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors.
- CVSS 2.0
- 5.4 MEDIUMAV:A/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 0.57% probability · 45th percentile
- CISA KEV
- Not listed
- Affected
- ibm/webshere cast iron cloud integration
- Source
- psirt@us.ibm.com
References
- http://www-01.ibm.com/support/docview.wss?uid=swg1LI77155
- http://www-01.ibm.com/support/docview.wss?uid=swg21623324Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/81061
- http://www-01.ibm.com/support/docview.wss?uid=swg1LI77155
- http://www-01.ibm.com/support/docview.wss?uid=swg21623324Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/81061
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.