Show plain JSON{"id": "CVE-2013-2978", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 2.1, "accessVector": "NETWORK", "vectorString": "AV:N/AC:H/Au:S/C:P/I:N/A:N", "authentication": "SINGLE", "integrityImpact": "NONE", "accessComplexity": "HIGH", "availabilityImpact": "NONE", "confidentialityImpact": "PARTIAL"}, "acInsufInfo": false, "impactScore": 2.9, "baseSeverity": "LOW", "obtainAllPrivilege": false, "exploitabilityScore": 3.9, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false}]}, "published": "2013-08-27T03:34:35.063", "references": [{"url": "http://www-01.ibm.com/support/docview.wss?uid=swg21645566", "tags": ["Vendor Advisory"], "source": "psirt@us.ibm.com"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/83971", "source": "psirt@us.ibm.com"}, {"url": "http://www-01.ibm.com/support/docview.wss?uid=swg21645566", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/83971", "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Deferred", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-22"}]}], "descriptions": [{"lang": "en", "value": "Absolute path traversal vulnerability in the server in IBM Cognos Business Intelligence (BI) 8.4.1, 10.1, 10.1.1, 10.2, and 10.2.1 allows remote authenticated users to read files by leveraging the Report Author privilege, a different vulnerability than CVE-2013-2988."}, {"lang": "es", "value": "Una vulnerabilidad de salto de directorio absoluto en el servidor en IBM Cognos Business Intelligence (BI) v8.4.1, v10.1, v10.1.1, v10.2, y v10.2.1, permite a los usuarios remotos autenticados leer archivos mediante el aprovechamiento del privilegio \"Report Author\", una vulnerabilidad diferente a CVE-2013-2988."}], "lastModified": "2025-04-11T00:51:21.963", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:ibm:cognos_business_intelligence:8.4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2B76A06D-761D-4CFE-A9E6-FC5A1F726CF5"}, {"criteria": "cpe:2.3:a:ibm:cognos_business_intelligence:10.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "519B7097-7E46-4520-B9F9-A85E13A0F9CE"}, {"criteria": "cpe:2.3:a:ibm:cognos_business_intelligence:10.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B00BAD84-4BB6-41ED-835E-86AB150716D9"}, {"criteria": "cpe:2.3:a:ibm:cognos_business_intelligence:10.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6588FEE1-5A6F-4ED6-998A-B8CF54954F5D"}, {"criteria": "cpe:2.3:a:ibm:cognos_business_intelligence:10.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FDA8132D-A09E-4D4C-9A5D-D708010CCFFD"}], "operator": "OR"}]}], "sourceIdentifier": "psirt@us.ibm.com"}