First published: Sun Oct 30 2011(Updated: )
Unspecified vulnerability in the Import feature in IBM Rational AppScan Enterprise and AppScan Reporting Console 5.2 through 7.9.x and 8.x before 8.0.1.1 allows remote attackers to execute arbitrary commands on an agent server via a crafted ZIP archive.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Rational AppScan | =5.5 | |
IBM Rational AppScan | =7.8.0.1 | |
IBM Rational AppScan | =5.2 | |
IBM Rational AppScan | =7.7.0.2 | |
IBM Rational AppScan | =8.0.0 | |
IBM Rational AppScan | =7.8.0 | |
IBM Rational AppScan | =8.0.0.2 | |
IBM Rational AppScan | =7.9.0.1 | |
IBM Rational AppScan | =5.6.0 | |
IBM Rational AppScan | =5.6.0.3 | |
IBM Rational AppScan | =7.9.0.2 | |
IBM Rational AppScan | =8.0.0.1 | |
IBM Rational AppScan | =5.4 | |
IBM Rational AppScan | =5.5.0.1 | |
IBM Rational AppScan | =7.7.0 | |
IBM Rational AppScan | =7.8.0.2 | |
IBM Rational AppScan | =8.0.1 | |
IBM Rational AppScan | =7.9.0.3 | |
IBM Rational AppScan | =7.9.0 | |
IBM Rational AppScan | =7.7.0.1 | |
IBM Rational AppScan | =5.5.0.2 | |
IBM Rational AppScan | =5.5.0 | |
IBM Rational AppScan | =8.0.0.3 | |
IBM Rational AppScan | =5.5.0 | |
IBM Rational AppScan | =8.0.0 | |
IBM Rational AppScan | =5.2 | |
IBM Rational AppScan | =7.9.0 | |
IBM Rational AppScan | =7.8.0.2 | |
IBM Rational AppScan | =5.6.0 | |
IBM Rational AppScan | =5.5.0.2 | |
IBM Rational AppScan | =5.6.0.3 | |
IBM Rational AppScan | =7.7.0.2 | |
IBM Rational AppScan | =7.7.0 | |
IBM Rational AppScan | =7.9.0.2 | |
IBM Rational AppScan | =7.9.0.3 | |
IBM Rational AppScan | =5.4 | |
IBM Rational AppScan | =7.8.0 | |
IBM Rational AppScan | =8.0.0.2 | |
IBM Rational AppScan | =7.9.0.1 | |
IBM Rational AppScan | =7.7.0.1 | |
IBM Rational AppScan | =8.0.0.1 | |
IBM Rational AppScan | =7.8.0.1 | |
IBM Rational AppScan | =5.5 | |
IBM Rational AppScan | =5.5.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-1366 is classified as a critical vulnerability due to its potential to allow remote attackers to execute arbitrary commands.
To mitigate CVE-2011-1366, upgrade to IBM Rational AppScan version 8.0.1.1 or later.
CVE-2011-1366 can lead to unauthorized remote code execution on the affected IBM Rational AppScan servers.
CVE-2011-1366 affects IBM Rational AppScan versions 5.2 through 7.9.x and 8.x before 8.0.1.1.
Yes, CVE-2011-1366 can be exploited through specially crafted ZIP archives.