CVE-2013-0457: XSS
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.5, Maximo Asset Management Essentials 7.5, and SmartCloud Control Desk 7.5 allows remote authenticated users to inject arbitrary web script or HTML via vectors related to a uisessionid.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0457?
CVE-2013-0457 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2013-0457?
To fix CVE-2013-0457, users should apply the latest security patches provided by IBM for Maximo Asset Management and SmartCloud Control Desk.
Who is affected by CVE-2013-0457?
CVE-2013-0457 affects remote authenticated users of IBM Maximo Asset Management 7.5, Maximo Asset Management Essentials 7.5, and SmartCloud Control Desk 7.5.
What type of vulnerability is CVE-2013-0457?
CVE-2013-0457 is a cross-site scripting (XSS) vulnerability that allows injection of arbitrary web scripts or HTML.
Can CVE-2013-0457 be exploited by unauthenticated users?
CVE-2013-0457 cannot be exploited by unauthenticated users, as it requires authentication to inject scripts.