Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 5 min 109 bronnen 3 kritiek 22 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2013-6719

MEDIUM · 6.0 CVSS Gepubliceerd: CWE-78

Beschrijving NL

delivery.php in de Passive Capture Application (PCA) webconsole in IBM Tealeaf CX 7.x, 8.x tot en met 8.6, 8.7 voor FP2 en 8.8 voor FP2 stelt op afstand geverifieerde gebruikers in staat om willekeurige opdrachten uit te voeren via shell-metakarakters in de parameter testconn_host.

Origineel (Engels) tonen

delivery.php in the Passive Capture Application (PCA) web console in IBM Tealeaf CX 7.x, 8.x through 8.6, 8.7 before FP2, and 8.8 before FP2 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the testconn_host parameter.

Vendors

Ibm

Affected products

Tealeaf Cx

References