CVE Database
/

CVE-2011-3391

Back to search

CVE-2011-3391

Published: Sep 8, 2011

Modified: Aug 6, 2024

PUBLISHED

Description

IBM Rational Build Forge 7.1.2 relies on client-side JavaScript code to enforce the EditSecurity permission requirement for the Export Key File function, which allows remote authenticated users to read a key file by removing a disable attribute in the Security sub-menu.

VendorProductVersions

n/a

n/a

affected
n/a

References

74831
vdb-entry
x_refsource_OSVDB
49407
vdb-entry
x_refsource_BID
1026004
vdb-entry
x_refsource_SECTRACK
45871
third-party-advisory
x_refsource_SECUNIA
PM38058
vendor-advisory
x_refsource_AIXAPAR

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now