Vulnerability Bulletins

IBM Security Bulletin: IBM Tealeaf CX Passive Capture Application is vulnerable to a remotely exploitable OS command injection and local file inclusion (CVE-2013-6719 and CVE-2013-6720)


System information

   
Affected software IBM

Description

IBM Tealeaf CX Passive Capture Application is vulnerable to a remotely exploitable OS command injection and local file inclusion. These vulnerabilities may be exploited to compromise the host system. CVE(s): CVE-2013-6719 and CVE-2013-6720 Affected product(s) and affected version(s): The following IBM Tealeaf CX versions are affected: IBM Tealeaf CX V7.1 IBM Tealeaf CX V7.2 IBM Tealeaf CX V8.0 IBM Tealeaf CX V8.1 IBM Tealeaf CX V8.2 IBM Tealeaf CX V8.3 IBM Tealeaf CX V8.4 IBM

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_tealeaf_cx_passive_capture_application_is_vulnerable_to_a_remotely_exploitable_os_command_injection_and_local_file_inclusion_cve_2013_6719_and_cve_2013_6720?lang=en_us

Standar resources

Property Value
CVE CVE-2013-6719 ,CVE-2013-6720 ,CVE-2014-0411 ,CVE-2014-0829 ,CVE-2013-6450 ,CVE-2013-6449 and CVE-2013-4353.

Version history

Version Comments Date
1.0 Advisory issued 2014-03-21
Ministerio de Defensa
CNI
CCN
CCN-CERT