CVE-2013-6735: Medium severity IBM WebSphere Portal vulnerability
IBM WebSphere Portal 6.0.0.x through 6.0.0.1, 6.0.1.x through 6.0.1.7, 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.0.0.x through 7.0.0.2 CF26, and 8.0.0.x through 8.0.0.1 CF08 allows remote attackers to obtain sensitive Java Content Repository (JCR) information via a modified Web Content Manager (WCM) URL.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6735?
CVE-2013-6735 has a medium severity score due to the potential for remote attackers to access sensitive information.
How do I fix CVE-2013-6735?
To fix CVE-2013-6735, you should apply the latest security patches provided by IBM for your version of WebSphere Portal.
What versions of IBM WebSphere Portal are affected by CVE-2013-6735?
CVE-2013-6735 affects IBM WebSphere Portal versions 6.0.0.x through 8.0.0.1.
What are the potential risks of CVE-2013-6735?
The risks of CVE-2013-6735 include unauthorized access to sensitive Java Content Repository information.
Is there a workaround for CVE-2013-6735 if I cannot apply a patch immediately?
A potential workaround for CVE-2013-6735 is to restrict access to the affected components to trusted users only.