Vulnerabilities > CVE-2013-0470 - Configuration vulnerability in IBM Netezza Performance Portal 1.0.2

047910
CVSS 4.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
SINGLE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
ibm
CWE-16

Summary

HTTPD in IBM Netezza Performance Portal 1.0.2 allows remote authenticated users to list application directories containing asset files via a direct request to a directory URI, as demonstrated by listing image files.

Vulnerable Configurations

Part Description Count
Hardware
Ibm
1

Common Weakness Enumeration (CWE)