Back to search
CVE-2013-3005
Published: Jul 6, 2013
Modified: Aug 6, 2024
PUBLISHED
Description
The TFTP client in IBM AIX 6.1 and 7.1, and VIOS 2.2.2.2-FP-26 SP-02, when RBAC is enabled, allows remote authenticated users to bypass intended file-ownership restrictions, and read or overwrite arbitrary files, via unspecified vectors.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://aix.software.ibm.com/aix/efixes/security/tftp_advisory.asc
x_refsource_CONFIRM
aix-cve20133005-file-overwrite(85366)
vdb-entry
x_refsource_XF
IV42935
vendor-advisory
x_refsource_AIXAPAR
IV42934
vendor-advisory
x_refsource_AIXAPAR
IV40221
vendor-advisory
x_refsource_AIXAPAR
IV42932
vendor-advisory
x_refsource_AIXAPAR
IV42933
vendor-advisory
x_refsource_AIXAPAR
oval:org.mitre.oval:def:19519
vdb-entry
signature
x_refsource_OVAL
IV42700
vendor-advisory
x_refsource_AIXAPAR
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now