CVE-2013-5397
Last modified
CVE-2013-5397 is a vulnerability of currently unknown severity. Unspecified vulnerability in the Webservice Axis Gateway in IBM Rational Focal Point 6.4 before devfix1, 6.4.1.3 before devfix1, 6.5.1 before devfix1, 6.5.2 before devfix4, 6.5.2.3 before devfix9, 6.6 before devfix5, 6.6.0.1 before devfix2, and 6.6.1 allows remote attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2013-5398.. EPSS estimates a 0.59% chance of exploitation in the next 30 days.
Description
Unspecified vulnerability in the Webservice Axis Gateway in IBM Rational Focal Point 6.4 before devfix1, 6.4.1.3 before devfix1, 6.5.1 before devfix1, 6.5.2 before devfix4, 6.5.2.3 before devfix9, 6.6 before devfix5, 6.6.0.1 before devfix2, and 6.6.1 allows remote attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2013-5398.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Rational Focal Point | 6.4 |
| Ibm | Rational Focal Point | 6.4.1.3 |
| Ibm | Rational Focal Point | 6.5.1 |
| Ibm | Rational Focal Point | 6.5.2 |
| Ibm | Rational Focal Point | 6.5.2.3 |
| Ibm | Rational Focal Point | 6.6 |
| Ibm | Rational Focal Point | 6.6.0.1 |
| Ibm | Rational Focal Point | 6.6.1 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-5397?
How severe is CVE-2013-5397?
How do I fix CVE-2013-5397?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2013
- CVE-2013-5389Cross-site scripting (XSS) vulnerability in iNotes in IBM Do…
- CVE-2013-5390Cross-site scripting (XSS) vulnerability in the monitoring c…
- CVE-2013-5391IBM Worklight Consumer and Enterprise Editions 5.0.x before …
- CVE-2013-5393The monitoring console in IBM WebSphere eXtreme Scale 7.1.0,…
- CVE-2013-5394The monitoring console in IBM WebSphere eXtreme Scale 7.1.0,…
- CVE-2013-5395IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 before 7.…
- CVE-2013-5398Unspecified vulnerability in the Webservice Axis Gateway in …
- CVE-2013-5400An unspecified servlet in IBM Platform Symphony Developer Ed…
- CVE-2013-5401The command-port listener in IBM WebSphere MQ Internet Pass-…
- CVE-2013-5402Cross-site scripting (XSS) vulnerability in IBM Maximo Asset…
- CVE-2013-5403Unspecified vulnerability on the IBM WebSphere DataPower XC1…
- CVE-2013-5404Cross-site scripting (XSS) vulnerability in the search imple…
Are you affected by CVE-2013-5397?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
