Multiple IBM Products CVE-2013-0513 Local Privilege Escalation Vulnerability
BID:58691
Info
Multiple IBM Products CVE-2013-0513 Local Privilege Escalation Vulnerability
| Bugtraq ID: | 58691 |
| Class: | Input Validation Error |
| CVE: |
CVE-2013-0513 |
| Remote: | No |
| Local: | Yes |
| Published: | Mar 25 2013 12:00AM |
| Updated: | Sep 28 2016 12:02AM |
| Credit: | IBM |
| Vulnerable: |
IBM Rational Policy Tester 8.5.0.3 IBM Rational Policy Tester 8.5.0.2 IBM Rational Policy Tester 8.5.0.1 IBM Rational Policy Tester 8.5 IBM Rational Policy Tester 8.0 IBM Rational Policy Tester 5.6 IBM Rational ClearQuest 8.0.1 3 IBM Rational ClearQuest 8.0.1 IBM Rational ClearQuest 8.0 10 IBM Rational ClearQuest 7.1.2 13 IBM Rational ClearQuest 7.1.2 11 IBM Rational ClearQuest 7.1.1 8 IBM Rational ClearQuest 7.1.1 IBM Rational ClearQuest 9.0.0.1 IBM Rational ClearQuest 9.0 IBM Rational ClearQuest 8.0.1.9 IBM Rational ClearQuest 8.0.1.8 IBM Rational ClearQuest 8.0.1.7 IBM Rational ClearQuest 8.0.1.6 IBM Rational ClearQuest 8.0.1.5 IBM Rational ClearQuest 8.0.1.4 IBM Rational ClearQuest 8.0.1.2 IBM Rational ClearQuest 8.0.1.11 IBM Rational ClearQuest 8.0.1.10 IBM Rational ClearQuest 8.0.1.1 IBM Rational ClearQuest 8.0.0.9 IBM Rational ClearQuest 8.0.0.8 IBM Rational ClearQuest 8.0.0.7 IBM Rational ClearQuest 8.0.0.5 IBM Rational ClearQuest 8.0.0.4 IBM Rational ClearQuest 8.0.0.3 IBM Rational ClearQuest 8.0.0.2 IBM Rational ClearQuest 8.0.0.18 IBM Rational ClearQuest 8.0.0.17 IBM Rational ClearQuest 8.0.0.16 IBM Rational ClearQuest 8.0.0.15 IBM Rational ClearQuest 8.0.0.14 IBM Rational ClearQuest 8.0.0.13 IBM Rational ClearQuest 8.0.0.12 IBM Rational ClearQuest 8.0.0.11 IBM Rational ClearQuest 8.0.0.1 IBM Rational ClearQuest 8.0.0 6 IBM Rational ClearQuest 8.0 IBM Rational ClearQuest 7.1.2.9 IBM Rational ClearQuest 7.1.2.8 IBM Rational ClearQuest 7.1.2.7 IBM Rational ClearQuest 7.1.2.6 IBM Rational ClearQuest 7.1.2.5 IBM Rational ClearQuest 7.1.2.4 IBM Rational ClearQuest 7.1.2.3 IBM Rational ClearQuest 7.1.2.2 IBM Rational ClearQuest 7.1.2.19 IBM Rational ClearQuest 7.1.2.18 IBM Rational ClearQuest 7.1.2.16 IBM Rational ClearQuest 7.1.2.15 IBM Rational ClearQuest 7.1.2.14 IBM Rational ClearQuest 7.1.2.12 IBM Rational ClearQuest 7.1.2.10 IBM Rational ClearQuest 7.1.2.1 IBM Rational ClearQuest 7.1.2 IBM Rational ClearQuest 7.1.1.9 IBM Rational ClearQuest 7.1.1.7 IBM Rational ClearQuest 7.1.1.6 IBM Rational ClearQuest 7.1.1.5 IBM Rational ClearQuest 7.1.1.4 IBM Rational ClearQuest 7.1.1.3 IBM Rational ClearQuest 7.1.1.2 IBM Rational ClearQuest 7.1.1.1 IBM Rational ClearQuest 7.1.0.2 IBM Rational ClearQuest 7.1.0.1 IBM Rational ClearQuest 7.1 IBM Rational AppScan Enterprise 8.6.0.2 IBM Rational AppScan Enterprise 8.6.0.1 IBM Rational AppScan Enterprise 8.6.0.0 IBM Rational AppScan Enterprise 8.6 IBM Rational AppScan Enterprise 8.5.0.1 IBM Rational AppScan Enterprise 8.5 IBM Rational AppScan Enterprise 8.0.1.1 IBM Rational AppScan Enterprise 8.0.1 IBM Rational AppScan Enterprise 8.0.0.1 IBM Rational AppScan Enterprise 8.0.0 IBM Rational AppScan Enterprise 5.6 |
| Not Vulnerable: |
IBM Rational Policy Tester 8.5 4 IBM Rational AppScan Enterprise 8.7 |
Discussion
Multiple IBM Products CVE-2013-0513 Local Privilege Escalation Vulnerability
Multiple IBM products are prone to a local privilege-escalation vulnerability.
Local attackers can exploit this issue to gain elevated privileges on affected computers.
The following product versions are affected:
Rational AppScan Enterprise versions 5.6 through 8.6.0.2
Rational Policy Tester versions 5.6 through 8.5.0.3
Multiple IBM products are prone to a local privilege-escalation vulnerability.
Local attackers can exploit this issue to gain elevated privileges on affected computers.
The following product versions are affected:
Rational AppScan Enterprise versions 5.6 through 8.6.0.2
Rational Policy Tester versions 5.6 through 8.5.0.3
Exploit / POC
Multiple IBM Products CVE-2013-0513 Local Privilege Escalation Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Multiple IBM Products CVE-2013-0513 Local Privilege Escalation Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Multiple IBM Products CVE-2013-0513 Local Privilege Escalation Vulnerability
References:
References:
- IBM Homepage (IBM)
- Rational AppScan Enterprise Homepage (IBM)
- Rational Policy Tester family HomePage (IBM)
- Security Bulletin: Multiple vulnerabilities in IBM Rational Policy Tester (IBM)
- Security Bulletin: Multiple vulnerabilities in IBM Security AppScan Enterprise (IBM)
- swg21987846: Unquoted Service Path Enumeration vulnerability in IBM Rational Cle (IBM)
- swg21990130: Unquoted Service Path Enumeration vulnerability in IBM Rational Cle (IBM)