CVE-2013-0587: XSS
Multiple cross-site scripting (XSS) vulnerabilities in IBM WebSphere Portal before 8.0.0.1 CF07 allow remote attackers to inject arbitrary web script or HTML via vectors involving the (1) Portal, (2) Portal 7.0.0.2, (3) Portal 8.0, or (4) PortalWeb2 theme.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0587?
CVE-2013-0587 has been classified as a medium severity vulnerability due to its potential impact on the application through XSS attacks.
How do I fix CVE-2013-0587?
To fix CVE-2013-0587, ensure you update IBM WebSphere Portal to version 8.0.0.1 CF07 or apply available patches.
What types of attacks are possible with CVE-2013-0587?
CVE-2013-0587 allows remote attackers to perform cross-site scripting attacks, which may lead to session hijacking or information theft.
Which versions of IBM WebSphere Portal are affected by CVE-2013-0587?
CVE-2013-0587 affects multiple versions of IBM WebSphere Portal, including 5.1.0.x, 6.0.x, 7.0.0.x, and 8.0.0.x up to 8.0.0.1.
Is there a workaround for CVE-2013-0587 while waiting for a fix?
There are no official workarounds released for CVE-2013-0587, so it is recommended to apply the necessary update as soon as possible.