Improper Scanning of File: URLs in IBM Rational AppScan Enterprise 5.x and 8.x

Improper Scanning of File: URLs in IBM Rational AppScan Enterprise 5.x and 8.x

CVE-2012-0735 · HIGH Severity

AV:N/AC:H/AU:N/C:C/I:C/A:C

IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 does not properly scan file: URLs, which allows man-in-the-middle attackers to obtain sensitive information or possibly have unspecified other impact via a crafted URI.

Learn more about our Web Application Penetration Testing UK.