CVE-2013-6304: IBM Algo One
Medium severity, CVSS 4.0. EPSS: 1.4% chance of exploitation in the next 30 days.
Multiple directory traversal vulnerabilities in Algo Risk Application (ARA) 2.4.0.1 through 4.9.1 in IBM Algo One allow remote authenticated users to bypass intended access restrictions via a crafted pathname for a (1) configuration or (2) JAR file.
Affected products
- IBM Algo One: version 4.9.1 only
- IBM Algo Risk Application: version 2.4.0.1 only; version 2.4.1 only; version 2.4.2 only; version 2.5.0 only; version 2.5.1 only; version 2.5.2 only; …
Published 2014-03-06. Last modified 2026-06-17.