CVE-2013-2993

Publication date

2013-07-31 14:00:00

Family

ibm

State

PUBLISHED

Description

IBM WebSphere Commerce 6.x through 6.0.0.11 and 7.x through 7.0.0.7 does not properly perform authentication for unspecified web services, which allows remote attackers to issue requests in the context of an arbitrary users active session via unknown vectors.