Junglewise Threat Intelligence

CVE-2013-3993: IBM InfoSphere BigInsights Invalid Input Vulnerability

CVE-2013-3993 · Severity: critical · CVSS 6.5 · Exploited in the wild · Published 2022-05-25

Vendors: IBM.

Executive brief

IBM InfoSphere BigInsights allows remote authenticated users to bypass file and directory restrictions via crafted parameters in unspecified API calls. This path traversal vulnerability could allow unauthorized access to read, write, or modify sensitive data or code.

Affected products

  • IBM InfoSphere BigInsights before 2.1.0.3

Timeline

  • 2014-07-07: disclosed: Initial NVD publication date
  • 2022-05-25: kev added: Added to CISA Known Exploited Vulnerabilities Catalog