CVE-2012-3294 – IBM Websphere MQ File Transfer Edition Web Gateway - Cross-Site Request Forgery
https://notcve.org/view.php?id=CVE-2012-3294
Multiple cross-site request forgery (CSRF) vulnerabilities in the Web Gateway component in IBM WebSphere MQ File Transfer Edition 7.0.4 and earlier, and WebSphere MQ - Managed File Transfer 7.5, allow remote attackers to hijack the authentication of arbitrary users for requests that (1) add user accounts via the /wmqfteconsole/Filespaces URI, (2) modify permissions via the /wmqfteconsole/FileSpacePermisssions URI, or (3) add MQ Message Descriptor (MQMD) user accounts via the /wmqfteconsole/UploadUsers URI. Múltiples vulnerabilidades de falsificación de peticiones en sitios cruzados (CSRF) en el componente de puerta de enlace de web (Web Gateway) de IBM WebSphere MQ File Transfer Edition v7.0.4 y versiones anteriores, y WebSphere MQ - Managed File Transfer v7.5, permiten a atacantes remotos secuestrar la autenticación de usuarios de su elección para las solicitudes que (1) agreguen cuentas de usuario a través de la URI wmqfteconsole/Filespaces, (2) modifiquen los permisos a través de la URI wmqfteconsole/FileSpacePermisssions, o (3) agreguen cuentas de usuario de MQ Message Descriptor (MQMD) a través de la URI wmqfteconsole/UploadUsers. IBM WebSphere MQ File Transfer Edition Web Gateway suffers from a cross site request forgery vulnerability. • https://www.exploit-db.com/exploits/20477 http://www-01.ibm.com/support/docview.wss?uid=swg1IC85516 http://www.exploit-db.com/exploits/20477 http://www.ibm.com/support/docview.wss?uid=swg21607482 http://www.securitytracker.com/id?1027373 https://exchange.xforce.ibmcloud.com/vulnerabilities/77180 • CWE-352: Cross-Site Request Forgery (CSRF) •
CVE-2012-2206 – IBM Websphere MQ File Transfer Edition Web Gateway - Insufficient Access Control
https://notcve.org/view.php?id=CVE-2012-2206
The Web Gateway component in IBM WebSphere MQ File Transfer Edition 7.0.4 and earlier allows remote authenticated users to read files of arbitrary users via vectors involving a username in a URI, as demonstrated by a modified metadata=fteSamplesUser field to the /transfer URI. El componente de puerta de enlace de Internet en IBM WebSphere MQ File Transfer Edition v7.0.4 y anteriores permite leer archivos de usuarios de su elección a usuarios remotos autenticados a través de vectores relacionados con un nombre de usuario en un URI, tal y como se demuestra por un campo metadata=fteSamplesUser modificado que apunta a la URI /transfer. IBM Websphere versions 7.0.4 and below suffer from a control failure that allows privilege escalation. • https://www.exploit-db.com/exploits/20478 http://www-01.ibm.com/support/docview.wss?uid=swg1IC82761 http://www.exploit-db.com/exploits/20478 http://www.ibm.com/support/docview.wss?uid=swg21607481 https://exchange.xforce.ibmcloud.com/vulnerabilities/77095 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2012-2181
https://notcve.org/view.php?id=CVE-2012-2181
Directory traversal vulnerability in the Dojo module in IBM WebSphere Portal 7.0.0.1 and 7.0.0.2 before CF14, and 8.0, allows remote attackers to read arbitrary files via a crafted URL. Vulnerabilidad de salto de directorio en el módulo Dojo en IBM WebSphere Portal v7.0.0.1 y v7.0.0.2 anteriores a vCF14, y v8.0, permite a atacantes remotos leer ficheros locales a través de una URL manipulada. • http://www.ibm.com/support/docview.wss?uid=swg1PM64172 http://www.ibm.com/support/docview.wss?uid=swg21598363 https://exchange.xforce.ibmcloud.com/vulnerabilities/75584 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •
CVE-2012-0717
https://notcve.org/view.php?id=CVE-2012-0717
IBM WebSphere Application Server 7.0 before 7.0.0.23, when a certain SSLv2 configuration with client authentication is used, allows remote attackers to bypass X.509 client-certificate authentication via unspecified vectors. IBM WebSphere Application Server v7.0 anterior a v7.0.0.23, cuando se utiliza una cierta configuración de SSLv2 con la autenticación del cliente, permite a atacantes remotos eludir X.509 cliente certificado de autenticación a través de vectores no especificados. • http://www.ibm.com/support/docview.wss?uid=swg1PM52351 http://www.ibm.com/support/docview.wss?uid=swg21595172 • CWE-287: Improper Authentication •
CVE-2012-2170
https://notcve.org/view.php?id=CVE-2012-2170
The Application Snoop Servlet in IBM WebSphere Application Server 7.0 before 7.0.0.23 does not properly restrict access, which allows remote attackers to obtain sensitive client and request information via a direct request. La aplicación de Snoop Servlet en IBM WebSphere Application Server v7.0 anterior a v7.0.0.23 no restringe el acceso, permite a atacantes remotos obtener información sensible de los clientes y la solicitud a través de una solicitud directa. • http://www.ibm.com/support/docview.wss?uid=swg1PM56183 http://www.ibm.com/support/docview.wss?uid=swg21595172 https://exchange.xforce.ibmcloud.com/vulnerabilities/75234 • CWE-264: Permissions, Privileges, and Access Controls •