Directory Traversal Vulnerability in IBM Tealeaf Customer Experience
CVE-2017-1279

6.5MEDIUM

Key Information:

Vendor

IBM

Vendor
CVE Published:
26 January 2018

What is CVE-2017-1279?

IBM Tealeaf Customer Experience versions 8.7, 8.8, and 9.0.2 are susceptible to a directory traversal vulnerability. This flaw allows remote attackers to manipulate URL requests using 'dot dot' sequences (/../), enabling them to traverse directories and access arbitrary files on the system. This poses significant risks as sensitive data may be exposed without proper authorization.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Tealeaf Customer Experience 9.0.2

Tealeaf Customer Experience 8.7

Tealeaf Customer Experience 8.8

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.