CVE-2010-4622
Directory traversal vulnerability in WebSEAL in IBM Tivoli Access Manager for e-business 6.1.1 before 6.1.1-TIV-AWS-FP0001 on AIX allows remote attackers to read arbitrary files via a %uff0e%uff0e (encoded dot dot) in a URI.
- Affected products
- Aix, Ibm Tivoli Access Manager For E-Business, Webseal
- Ibm Tivoli Access Manager For E-business
- = 6.1.1
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 2.9% (86th percentile)
- Weakness
- CWE-22
- NVD status
- Modified
- Published
- 2010-12-30
CVE-2010-4622 at NVD
No indexed exploits for CVE-2010-4622 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2010-4622 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.