CVE-2013-6332: High severity IBM Algo One vulnerability
Published Feb 6, 2014
·Updated
Unrestricted file upload vulnerability in IBM Algo One UDS 4.7.0 through 5.0.0 allows remote authenticated users to execute arbitrary code by uploading a .jsp file and then launching it.
Affected Software
6 affected components
IBM Algo One=4.7.0
IBM Algo One=4.7.1
IBM Algo One=4.8.0
IBM Algo One=4.9.0
IBM Algo One=4.9.1
IBM Algo One=5.0.0
Event History
Feb 6, 2014
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Data Sourced
via NVD·11:55 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-6332?
CVE-2013-6332 is considered a critical vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2013-6332?
To fix CVE-2013-6332, upgrade to a patched version of IBM Algo One that addresses the unrestricted file upload issue.
3
What software versions are affected by CVE-2013-6332?
CVE-2013-6332 affects IBM Algo One versions 4.7.0 to 5.0.0.
4
Who can exploit CVE-2013-6332?
CVE-2013-6332 can be exploited by remote authenticated users who have access to upload files to the application.
5
What are the consequences of an exploit for CVE-2013-6332?
Exploitation of CVE-2013-6332 can lead to unauthorized execution of arbitrary code on the server.