CVE-2013-6332
IBM Algo One UDS 4.7.0-5.0.0 - Authenticated Arbitrary File Upload and Remote Code Execution via JSP File
Title source: llmDescription
Unrestricted file upload vulnerability in IBM Algo One UDS 4.7.0 through 5.0.0 allows remote authenticated users to execute arbitrary code by uploading a .jsp file and then launching it.
References (2)
Core 2
Core References
Vendor Advisory x_refsource_confirm
http://www.ibm.com/support/docview.wss?uid=swg21663820
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/89023
Scores
EPSS
0.0221
EPSS Percentile
80.8%
Details
Status
published
Products (6)
ibm/algo_one
4.7.0
ibm/algo_one
4.7.1
ibm/algo_one
4.8.0
ibm/algo_one
4.9.0
ibm/algo_one
4.9.1
ibm/algo_one
5.0.0
Published
Feb 06, 2014
Tracked Since
Feb 18, 2026