CVE-2013-6304: Path Traversal
Multiple directory traversal vulnerabilities in Algo Risk Application (ARA) 2.4.0.1 through 4.9.1 in IBM Algo One allow remote authenticated users to bypass intended access restrictions via a crafted pathname for a (1) configuration or (2) JAR file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6304?
CVE-2013-6304 is classified as a medium severity vulnerability due to its potential to allow unauthorized access to sensitive files.
How do I fix CVE-2013-6304?
To fix CVE-2013-6304, upgrade to the latest version of IBM Algo Risk Application or apply the available security patches that address the vulnerability.
Who is affected by CVE-2013-6304?
CVE-2013-6304 affects multiple versions of IBM Algo Risk Application from 2.4.0.1 to 4.9.1.
What kind of vulnerability is CVE-2013-6304?
CVE-2013-6304 is a directory traversal vulnerability that allows remote authenticated users to bypass access restrictions.
Can CVE-2013-6304 be exploited remotely?
Yes, CVE-2013-6304 can be exploited remotely by authenticated users who can manipulate pathnames.