Lucene search

K
ibmIBM3A0F6F32C98ECA81562A37EADD3B9F8F4E81ED7874D760E227D85F3096669BEB
HistoryDec 22, 2020 - 4:37 p.m.

Security Bulletin: Vulnerabilities in IBM Rational Synergy's Help System (CVE-2013-0464, CVE-2013-0467, CVE-2013-0599)

2020-12-2216:37:26
www.ibm.com
22
ibm rational synergy
vulnerabilities
help system
cve-2013-0464
cve-2013-0467
cve-2013-0599
confidentiality
integrity
url crafting
parameter path crafting
upgrade
fix pack 5

EPSS

0.003

Percentile

69.1%

Summary

IBM Rational Synergy can be affected by three vulnerabilities in the IBM Eclipse Help System (IEHS), which is used to display the IBM Rational Synergy help content.

Vulnerability Details

| Subscribe to My Notifications to be notified of important product support alerts like this.

  • Follow this link for more information (requires login with your IBM ID)
    โ€”|โ€”

CVE ID:CVE-2013-0464
**
Description:** An unspecified vulnerability in IBM Eclipse Help System related to search could allow a remote attacker to affect confidentiality and integrity.

CVSS Base Score: 4.3 **CVSS Temporal Score:**See <https://exchange.xforce.ibmcloud.com/vulnerabilities/81060&gt; for the current score *CVSS Environmental Score:**Undefined CVSS Vector:(AV:N/AC:M/Au:N/C:N/I:P/A:N) **
**

CVE ID:CVE-2013-0467
** **Description: An unspecified vulnerability in IBM Eclipse Help System related to URL crafting could allow a remote attacker to access unauthorized information.

CVSS Base Score: 4.0 **CVSS Temporal Score:**See _<https://exchange.xforce.ibmcloud.com/vulnerabilities/81102&gt;_ for the current score *CVSS Environmental Score:**Undefined CVSS Vector:(AV:N/AC:L/Au:S/C:P/I:N/A:N) **
**

CVE ID:CVE-2013-0599
**
Description:** An unspecified vulnerability in IBM Eclipse Help System related to parameter path crafting could allow a remote attacker to access sensitive information.

CVSS Base Score: 5.0 **CVSS Temporal Score:**See <https://exchange.xforce.ibmcloud.com/vulnerabilities/83613&gt; for the current score *CVSS Environmental Score: **Undefined CVSS Vector: (AV:N/AC:L/AU:N/C:P/I:N/A:N)

Affected Products and Versions

Rational Synergy 7.2.0.4

Remediation/Fixes

Upgrade to Rational Synergy Fix Pack 5 (7.2.0.5) for 7.2

Workarounds and Mitigations

None

EPSS

0.003

Percentile

69.1%

Related for 3A0F6F32C98ECA81562A37EADD3B9F8F4E81ED7874D760E227D85F3096669BEB