CVE-2013-0186

Severity
6.1MEDIUM
EPSS
0.4%
top 39.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 1
Latest updateMay 5

Description

Multiple cross-site scripting (XSS) vulnerabilities in ManageIQ EVM allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7

Affected Packages3 packages

CVEListV5red_hat/red_hat_cloudforms_3.0Red Hat CloudForms 3.0 Management Engine 5.2

🔴Vulnerability Details

2
GHSA
GHSA-p5jr-6623-mc6j: Multiple cross-site scripting (XSS) vulnerabilities in ManageIQ EVM allows remote attackers to inject arbitrary web script or HTML via unspecified vec2022-05-05
CVEList
CVE-2013-0186: Multiple cross-site scripting (XSS) vulnerabilities in ManageIQ EVM allows remote attackers to inject arbitrary web script or HTML via unspecified vec2019-11-01

📋Vendor Advisories

1
Red Hat
EVM: Stored XSS2014-03-11

💬Community

1
Bugzilla
CVE-2013-0186 ManageIQ EVM: Stored XSS2013-01-15