Lucene search

K
cvelistIbmCVELIST:CVE-2013-5414
HistoryNov 16, 2013 - 3:00 p.m.

CVE-2013-5414

2013-11-1615:00:00
ibm
www.cve.org
11

AI Score

6.2

Confidence

High

EPSS

0.001

Percentile

45.4%

The migration functionality in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.31, 8.0 before 8.0.0.8, and 8.5 before 8.5.5.1 does not properly support the distinction between the admin role and the adminsecmanager role, which allows remote authenticated users to gain privileges in opportunistic circumstances by accessing resources in between a migration and a role evaluation.

AI Score

6.2

Confidence

High

EPSS

0.001

Percentile

45.4%

Related for CVELIST:CVE-2013-5414