CVE-2013-0599: Infoleak
IBM Eclipse Help System (IEHS), as used in IBM Rational Directory Server 5.1.1 through 5.1.1.2 and 5.2 through 5.2.1 and other products, allows remote attackers to obtain sensitive information by providing a crafted parameter path and then reading the debug information associated with the 500 HTTP status code.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0599?
CVE-2013-0599 has a medium severity rating due to its potential to expose sensitive information.
How do I fix CVE-2013-0599?
To address CVE-2013-0599, it is recommended to upgrade IBM Rational Directory Server to the latest version that is not affected.
What products are affected by CVE-2013-0599?
CVE-2013-0599 impacts IBM Rational Directory Server versions 5.1.1 through 5.1.1.2 and 5.2 through 5.2.1.
What type of vulnerability is CVE-2013-0599?
CVE-2013-0599 is an information disclosure vulnerability that allows unauthorized access to debug information.
Can CVE-2013-0599 be exploited remotely?
Yes, CVE-2013-0599 can be exploited by remote attackers through crafted parameter paths.