IBM Security AppScan Enterprise 5.6 up to and including 8.7.0.1 allows remote authenticated users to read arbitrary report files by leveraging knowledge of filenames that cannot be easily predicted.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ibm security appscan 6.0.2.0 |
||
ibm security appscan 6.0.0.0 |
||
ibm security appscan 6.0.1.0 |
||
ibm security appscan 8.0.1.1 |
||
ibm security appscan 8.0.11 |
||
ibm security appscan 8.7.0.1 |
||
ibm security appscan 5.6.0.0 |
||
ibm security appscan 8.0.0.2 |
||
ibm security appscan 8.0.1.0 |
||
ibm security appscan 8.6.0.2 |
||
ibm security appscan 8.7.0.0 |
||
ibm security appscan 6.1.1.0 |
||
ibm security appscan 8.5.0.0 |
||
ibm security appscan 8.5.0.1 |
||
ibm security appscan 8.0.0.0 |
||
ibm security appscan 8.0.0.1 |
||
ibm security appscan 8.6.0.0 |
||
ibm security appscan 8.6.0.1 |