CVE-2013-0502: XSS
Cross-site scripting (XSS) vulnerability in IBM InfoSphere Information Server 8.1, 8.5 through FP3, 8.7 through FP2, and 9.1 allows remote attackers to inject arbitrary web script or HTML via a malformed URL.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0502?
CVE-2013-0502 is classified as a medium severity vulnerability due to the potential for cross-site scripting attacks.
How do I fix CVE-2013-0502?
To fix CVE-2013-0502, upgrade your IBM InfoSphere Information Server to a version that is not affected by this vulnerability.
Which versions of IBM InfoSphere Information Server are affected by CVE-2013-0502?
CVE-2013-0502 affects IBM InfoSphere Information Server versions 8.1, 8.5 (through FP3), 8.7 (through FP2), and 9.1.
What type of attack can exploit CVE-2013-0502?
CVE-2013-0502 can be exploited by attackers to perform cross-site scripting (XSS) attacks.
Can I mitigate CVE-2013-0502 without updating my software?
Mitigation for CVE-2013-0502 is limited, and the best approach is to update to a safe version of the software.