CVE Vulnerabilities

CVE-2013-4022

Published: Sep 25, 2013 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.5 LOW
AV:N/AC:M/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x store unspecified authentication information in a cookie, which allows remote authenticated users to bypass intended access restrictions via unknown vectors.

Affected Software

NameVendorStart VersionEnd Version
Data_studio_web_consoleIbm3.1.0 (including)3.1.0 (including)
Db2_recovery_expertIbm2.0 (including)2.0 (including)
Infosphere_optim_configuration_managerIbm2.0 (including)2.0 (including)
Infosphere_optim_configuration_managerIbm2.1 (including)2.1 (including)
Optim_performance_managerIbm5.1.0 (including)5.1.0 (including)

References