CVE-2013-0195: XSS
Published Nov 20, 2019
·Updated
Cross-site Scripting (XSS) in Piwik before 1.10.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: This is a different vulnerability than CVE-2013-0193 and CVE-2013-0194.
Affected Software
2 affected componentsFixes available
Matomo Matomo<1.10.1
debian/matomo
5.3.1+dfsg-15.5.1+dfsg-3
Event History
Nov 20, 2019
CVE Published
via MITRE·02:31 PM
Data Sourced
via MITRE·02:31 PM
DescriptionWeakness
Feb 18, 2026
Data Sourced
via Debian·03:05 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-0195?
CVE-2013-0195 has a severity rating that indicates a potential risk for cross-site scripting attacks.
2
How do I fix CVE-2013-0195?
To fix CVE-2013-0195, upgrade Piwik to version 1.10.1 or later.
3
What types of attacks can CVE-2013-0195 enable?
CVE-2013-0195 can enable remote attackers to inject arbitrary web scripts or HTML, leading to cross-site scripting attacks.
4
Which versions of Piwik are affected by CVE-2013-0195?
Piwik versions prior to 1.10.1 are affected by CVE-2013-0195.
5
Is CVE-2013-0195 related to other vulnerabilities?
Yes, CVE-2013-0195 is different from CVE-2013-0193 and CVE-2013-0194.