CVE-2013-0549: XSS
Cross-site scripting (XSS) vulnerability in the Web Content Manager - Web Content Viewer Portlet in the server in IBM WebSphere Portal 7.0.0.x through 7.0.0.2 CF22 and 8.0.0.x through 8.0.0.1 CF5, when the IBM Portlet API is used, allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0549?
CVE-2013-0549 is classified as a medium severity vulnerability due to its potential for exploit through cross-site scripting.
How do I fix CVE-2013-0549?
To fix CVE-2013-0549, you should apply the latest patches provided by IBM for affected versions of WebSphere Portal.
What software versions are affected by CVE-2013-0549?
CVE-2013-0549 affects IBM WebSphere Portal versions 7.0.0.x up to 7.0.0.2 CF22 and 8.0.0.x up to 8.0.0.1 CF5.
What is the nature of CVE-2013-0549?
CVE-2013-0549 is a cross-site scripting (XSS) vulnerability that allows remote attackers to inject arbitrary web scripts or HTML.
Who can exploit CVE-2013-0549?
CVE-2013-0549 can be exploited by remote attackers with access to the Web Content Viewer Portlet when the IBM Portlet API is used.