CVE-2013-2950
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
CRLF injection vulnerability in IBM WebSphere Portal 6.1.0.x before 6.1.0.3 CF26, 6.1.5.x before 6.1.5 CF26, 7.0.0.x before 7.0.0.2 CF21, and 8.0.0.x through 8.0.0.1 CF5, when home substitution (aka uri.home.substitution) is enabled, allows remote authenticated users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.
Vulnerabilidad de inyección CRLF en IBM WebSphere Portal v6.1.0.x anterior a v6.1.0.3 CF26, v6.1.5.x anterior a v6.1.5 CF26, v7.0.0.x anterior a v7.0.0.2 CF21, y v8.0.0.x hasta v8.0.0.1 CF5 cuando la sustitución home (también conocida como uri.home.substitution) esta habilitada, permite a atacantes remotos autenticados inyectar cabeceras HTTP de su elección y llevar a cabo ataques de separación de respuesta HTTP a través de vectores no especificados.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2013-04-12 CVE Reserved
- 2013-06-03 CVE Published
- 2024-04-23 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-94: Improper Control of Generation of Code ('Code Injection')
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/83618 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg1PM85071 | 2017-08-29 | |
http://www-01.ibm.com/support/docview.wss?uid=swg21638864 | 2017-08-29 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 8.0 Search vendor "Ibm" for product "Websphere Portal" and version "8.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 8.0.0.0 Search vendor "Ibm" for product "Websphere Portal" and version "8.0.0.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 8.0.0.0 Search vendor "Ibm" for product "Websphere Portal" and version "8.0.0.0" | cf01 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 8.0.0.0 Search vendor "Ibm" for product "Websphere Portal" and version "8.0.0.0" | cf02 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 8.0.0.0 Search vendor "Ibm" for product "Websphere Portal" and version "8.0.0.0" | cf03 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 8.0.0.0 Search vendor "Ibm" for product "Websphere Portal" and version "8.0.0.0" | cf04 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 8.0.0.0 Search vendor "Ibm" for product "Websphere Portal" and version "8.0.0.0" | cf05 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 8.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "8.0.0.1" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 8.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "8.0.0.1" | cf04 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 8.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "8.0.0.1" | cf05 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.0 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.0 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.0" | cf001 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.1" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.1" | cf002 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.1" | cf003 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.1" | cf004 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.1" | cf005 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.1" | cf006 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.1" | cf007 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.1" | cf008 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.1" | cf009 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.1" | cf010 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.1" | cf019 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.2 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.2" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.2 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.2" | cf011 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.2 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.2" | cf012 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.2 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.2" | cf013 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.2 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.2" | cf014 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.2 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.2" | cf015 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.2 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.2" | cf016 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.2 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.2" | cf017 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.2 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.2" | cf018 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.2 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.2" | cf019 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 7.0.0.2 Search vendor "Ibm" for product "Websphere Portal" and version "7.0.0.2" | cf020 |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 6.1.0.0 Search vendor "Ibm" for product "Websphere Portal" and version "6.1.0.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 6.1.0.1 Search vendor "Ibm" for product "Websphere Portal" and version "6.1.0.1" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 6.1.0.2 Search vendor "Ibm" for product "Websphere Portal" and version "6.1.0.2" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 6.1.0.3 Search vendor "Ibm" for product "Websphere Portal" and version "6.1.0.3" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Portal Search vendor "Ibm" for product "Websphere Portal" | 6.1.5.0 Search vendor "Ibm" for product "Websphere Portal" and version "6.1.5.0" | - |
Affected
|