Directory Traversal Vulnerability in Algo Risk Application by IBM
CVE-2013-6304

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
6 March 2014

Summary

The Algo Risk Application (ARA) from IBM is impacted by multiple directory traversal vulnerabilities, allowing remote authenticated users to circumvent access controls by using specially crafted pathnames. These vulnerabilities affect versions 2.4.0.1 through 4.9.1 and can expose sensitive configuration and JAR files. Implementing proper validation and access controls is essential to mitigate these risks.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.