IBM InfoSphere Information Server 11.7 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. IBM X-Force ID: 246333
History

Wed, 12 Mar 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2025-03-12T19:59:31.650Z

Reserved: 2023-02-01T02:39:37.387Z

Link: CVE-2023-24960

cve-icon Vulnrichment

Updated: 2024-08-02T11:11:43.493Z

cve-icon NVD

Status : Modified

Published: 2023-02-17T19:15:11.900

Modified: 2024-11-21T07:48:51.010

Link: CVE-2023-24960

cve-icon Redhat

No data.