CVE Database
/

CVE-2013-2989

Back to search

CVE-2013-2989

Published: May 28, 2013

Modified: Aug 6, 2024

PUBLISHED

Description

The file-copying functionality in IBM Sterling Connect:Direct 3.8.00, 4.0.00, and 4.1.0 for UNIX on AIX 6.1 through 7.1 uses incorrect privileges, which allows local users to bypass filesystem read permissions and write permissions by leveraging authentication to the Connect:Direct product.

VendorProductVersions

n/a

n/a

affected
n/a

References

IC86449
vendor-advisory
x_refsource_AIXAPAR

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now