CVE-2013-4061

IBM Rational Policy Tester 8.5 before 8.5.0.5 does not properly check authorization for changes to the set of authentication hosts, which allows remote authenticated users to perform spoofing attacks involving an HTTP redirect via unspecified vectors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:rational_policy_tester:8.5.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_policy_tester:8.5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_policy_tester:8.5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_policy_tester:8.5.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_policy_tester:8.5.0.4:*:*:*:*:*:*:*

History

No history.

Information

Published : 2013-09-09 01:55

Updated : 2024-02-04 18:16


NVD link : CVE-2013-4061

Mitre link : CVE-2013-4061

CVE.ORG link : CVE-2013-4061


JSON object : View

Products Affected

ibm

  • rational_policy_tester
CWE
CWE-287

Improper Authentication