Unrated severityNVD Advisory· Published Sep 25, 2013· Updated Apr 29, 2026
CVE-2013-4022
CVE-2013-4022
Description
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x store unspecified authentication information in a cookie, which allows remote authenticated users to bypass intended access restrictions via unknown vectors.
Affected products
5- cpe:2.3:a:ibm:data_studio_web_console:3.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:db2_recovery_expert:2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_optim_configuration_manager:2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:ibm:infosphere_optim_configuration_manager:2.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:infosphere_optim_configuration_manager:2.1:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:optim_performance_manager:5.1.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www-01.ibm.com/support/docview.wssnvdVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/85928nvd
News mentions
0No linked articles in our index yet.