7.2
CVSSv2

CVE-2013-0513

Published: 29/03/2013 Updated: 29/08/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

IBM Security AppScan Enterprise 5.6 and 8.x prior to 8.7 and IBM Rational Policy Tester 5.6 and 8.x prior to 8.5.0.4 create a service that lacks " (double quote) characters in the service path, which allows local users to gain privileges via a Trojan horse program, related to an "Unquoted Service Path Enumeration" vulnerability.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm security appscan 8.0.11

ibm security appscan 8.5.0.0

ibm security appscan 8.5.0.1

ibm security appscan 8.0.1.0

ibm security appscan 8.0.1.1

ibm security appscan 8.0.0.1

ibm security appscan 8.0.0.2

ibm security appscan 8.6.0.2

ibm security appscan 5.6.0.0

ibm security appscan 8.0.0.0

ibm security appscan 8.6.0.0

ibm security appscan 8.6.0.1

ibm rational policy tester 8.5.0.0

ibm rational policy tester 8.0.1.1

ibm rational policy tester 5.6.0.0

ibm rational policy tester 8.5.0.3

ibm rational policy tester 8.5.0.2

ibm rational policy tester 8.0.0.1

ibm rational policy tester 8.0.0.0

ibm rational policy tester 8.5.0.1

ibm rational policy tester 8.0.1.0

ibm rational policy tester 8.0.0.2