← Back to CVE List
Vulnerability Intelligence Report

CVE-2013-3005

The TFTP client in IBM AIX 6.1 and 7.1, and VIOS 2.2.2.2-FP-26 SP-02, when RBAC is enabled, allows remote authenticated users to bypass intended file-ownership restrictions, and read or overwrite arbitrary files, via unspecified vectors.

No Active Exploit Signals
CVSS Base Score
8.5
HIGH
EPSS Probability:2.96%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Affected Products & Versions

Vendor Product Affected Versions
ibm aix 6.1, 7.1
ibm vios 2.2.2.2

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
2.961%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityIBM Corporation · Vendor · USA
Reserved2013-04-12T00:00:00
Published2013-07-06T10:00:00
Patch Date2013-07-03
Last Updated2024-08-06T15:52:21

LINK COPIED TO CLIPBOARD