7.5
CVSSv2

CVE-2012-4816

Published: 26/12/2012 Updated: 29/08/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

IBM Rational Automation Framework (RAF) 3.x up to and including 3.0.0.5 allows remote malicious users to bypass intended Env Gen Wizard (aka Environment Generation Wizard) access restrictions by visiting context roots in HTTP sessions on port 8080.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm rational automation framework 3.0.0.1

ibm rational automation framework 3.0.0.2

ibm rational automation framework 3.0.0.3

ibm rational automation framework 3.0.0.4

ibm rational automation framework 3.0

ibm rational automation framework 3.0.0.5