CVE-2013-5378
published 2013-11-13CVE-2013-5378: Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 8.x before 8.0.0.1 CF8 allows remote authenticated users to inject arbitrary web script or…
PriorityP413low3.5CVSS 2.0
AVNACMAuSCNIPAN
EPSS
0.95%
57.2th percentile
Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 8.x before 8.0.0.1 CF8 allows remote authenticated users to inject arbitrary web script or HTML by leveraging incorrect IBM Connections integration.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | websphere_portal | — | — |
| ibm | websphere_portal | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www-01.ibm.com/support/docview.wss?uid=swg1PM95802http://www-01.ibm.com/support/docview.wss?uid=swg1PM95881http://www-01.ibm.com/support/docview.wss?uid=swg1PM97593http://www-01.ibm.com/support/docview.wss?uid=swg21655634https://exchange.xforce.ibmcloud.com/vulnerabilities/86929http://www-01.ibm.com/support/docview.wss?uid=swg1PM95802http://www-01.ibm.com/support/docview.wss?uid=swg1PM95881http://www-01.ibm.com/support/docview.wss?uid=swg1PM97593http://www-01.ibm.com/support/docview.wss?uid=swg21655634https://exchange.xforce.ibmcloud.com/vulnerabilities/86929
2013-11-13
Published