CVE-2013-6722: Medium severity IBM WebSphere Portal vulnerability
Unrestricted file upload vulnerability in the Registration/Edit My Profile portlet in IBM WebSphere Portal 7.x before 7.0.0.2 CF27 and 8.x through 8.0.0.1 CF09 allows remote attackers to cause a denial of service or modify data via unspecified vectors.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM WebSphere Portalto a version that resolves this vulnerability.Fixed in 7.0.0.2 CF27 - Upgrade
Upgrade
IBM WebSphere Portalto a version that resolves this vulnerability.Fixed in 8.0.0.1 CF09
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6722?
CVE-2013-6722 has a medium severity rating as it allows remote attackers to cause denial of service or modify data.
How do I fix CVE-2013-6722?
To fix CVE-2013-6722, update your IBM WebSphere Portal to version 7.0.0.2 CF27 or 8.0.0.1 CF09 or later.
What types of attacks are possible with CVE-2013-6722?
CVE-2013-6722 can be exploited to perform unauthorized file uploads leading to denial of service or data modification.
Which versions of IBM WebSphere Portal are affected by CVE-2013-6722?
CVE-2013-6722 affects IBM WebSphere Portal versions 7.x before 7.0.0.2 CF27 and 8.x through 8.0.0.1 CF09.
Is CVE-2013-6722 still relevant for current systems?
CVE-2013-6722 is largely deprecated but may still pose a risk in environments using outdated versions of IBM WebSphere Portal.