IBM TRIRIGA Application Platform 3.2.1.x, 3.3.2 before 3.3.2.3, and 3.4.1 before 3.4.1.1 allows remote attackers to bypass intended access restrictions and read the image files of arbitrary users via a crafted URL.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Tririga_application_platform | Ibm | 3.2.1 (including) | 3.2.1 (including) |
Tririga_application_platform | Ibm | 3.3.2.0 (including) | 3.3.2.0 (including) |
Tririga_application_platform | Ibm | 3.3.2.1 (including) | 3.3.2.1 (including) |
Tririga_application_platform | Ibm | 3.3.2.2 (including) | 3.3.2.2 (including) |
Tririga_application_platform | Ibm | 3.4.0.0 (including) | 3.4.0.0 (including) |
Tririga_application_platform | Ibm | 3.4.0.1 (including) | 3.4.0.1 (including) |
Tririga_application_platform | Ibm | 3.4.1.0 (including) | 3.4.1.0 (including) |