CVE-2013-0193: XSS
Published Nov 20, 2019
·Updated
Cross-site Scripting (XSS) in Piwik before 1.10.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: This is a different vulnerability than CVE-2013-0194 and CVE-2013-0195.
Affected Software
2 affected componentsFixes available
Matomo Matomo<1.10.1
debian/matomo
5.3.1+dfsg-15.5.1+dfsg-3
Event History
Nov 20, 2019
CVE Published
via MITRE·02:26 PM
Data Sourced
via MITRE·02:26 PM
DescriptionWeakness
Feb 18, 2026
Data Sourced
via Debian·03:05 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-0193?
CVE-2013-0193 is classified as a medium severity vulnerability due to the potential for cross-site scripting attacks.
2
How do I fix CVE-2013-0193?
To fix CVE-2013-0193, upgrade to Piwik version 1.10.1 or later.
3
What kind of attacks can CVE-2013-0193 facilitate?
CVE-2013-0193 allows remote attackers to perform cross-site scripting (XSS) attacks, injecting arbitrary web script or HTML.
4
Which versions of Matomo are affected by CVE-2013-0193?
CVE-2013-0193 affects all versions of Matomo prior to 1.10.1.
5
Is CVE-2013-0193 related to other vulnerabilities?
Yes, CVE-2013-0193 is a different vulnerability from CVE-2013-0194 and CVE-2013-0195.