Directory Traversal Vulnerability in Algo Risk Application by IBM
CVE-2013-6304
Currently unrated
Summary
The Algo Risk Application (ARA) from IBM is impacted by multiple directory traversal vulnerabilities, allowing remote authenticated users to circumvent access controls by using specially crafted pathnames. These vulnerabilities affect versions 2.4.0.1 through 4.9.1 and can expose sensitive configuration and JAR files. Implementing proper validation and access controls is essential to mitigate these risks.
References
Timeline
Vulnerability published
Vulnerability Reserved