IBM Atlas eDiscovery Process Management 6.0.1.5 and earlier and 6.0.2, Disposal and Governance Management for IT 6.0.1.5 and earlier and 6.0.2, and Global Retention Policy and Schedule Management 6.0.1.5 and earlier and 6.0.2 in IBM Atlas Suite (aka Atlas Policy Suite) do not properly validate sessions, which allows remote attackers to bypass intended access restrictions, and visit PolicyAtlas/ResponseDraftServlet (aka the Compliance Questionnaire Save Draft servlet), via unspecified vectors.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ibm
Published: 2014-01-10T11:00:00
Updated: 2015-05-18T14:57:00
Reserved: 2013-10-31T00:00:00
Link: CVE-2013-6334
JSON object: View
NVD Information
Status : Analyzed
Published: 2014-01-10T12:02:51.543
Modified: 2015-07-28T14:42:38.737
Link: CVE-2013-6334
JSON object: View
Redhat Information
No data.
CWE