CVE-2013-2969

Severity
3.5LOW
EPSS
0.2%
top 62.27%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 19
Latest updateMay 17

Description

Cross-site scripting (XSS) vulnerability in IBM Sterling Control Center (SCC) 5.2 before 5.2.0.9, 5.3 before 5.3.0.4, and 5.4 through 5.4.0.1 allows remote authenticated users to inject arbitrary web script or HTML via vectors involving invalid characters.

CVSS vector

AV:N/AC:M/C:N/I:P/A:NExploitability: 6.8 | Impact: 2.9

Affected Packages1 packages

NVDibm/sterling_control_center7 versions+6

🔴Vulnerability Details

2
GHSA
GHSA-rvhf-wmr9-jv98: Cross-site scripting (XSS) vulnerability in IBM Sterling Control Center (SCC) 52022-05-17
CVEList
CVE-2013-2969: Cross-site scripting (XSS) vulnerability in IBM Sterling Control Center (SCC) 52013-06-19
CVE-2013-2969 (LOW CVSS 3.5) | Cross-site scripting (XSS) vulnerab | cvebase.io