CVE-2017-1577: Path Traversal
IBM WebSphere Portal 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. IBM X-Force ID: 132117.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-1577?
CVE-2017-1577 is classified as a high severity vulnerability due to the potential for remote directory traversal attacks.
How do I fix CVE-2017-1577?
To fix CVE-2017-1577, update IBM WebSphere Portal to the latest version provided by IBM that addresses the directory traversal vulnerability.
What versions of IBM WebSphere Portal are affected by CVE-2017-1577?
CVE-2017-1577 affects IBM WebSphere Portal versions 7.0, 8.0, 8.5, and 9.0.
What kind of attack can occur due to CVE-2017-1577?
An attacker can exploit CVE-2017-1577 to perform directory traversal, allowing them to view arbitrary files on the system.
What are the potential consequences of CVE-2017-1577 exploitation?
Exploitation of CVE-2017-1577 can lead to unauthorized access to sensitive files and data within the IBM WebSphere Portal system.