CVE-2013-1770: XSS
Published Apr 2, 2014
·Updated
Cross-site scripting (XSS) vulnerability in viewsview.php in Ganglia Web 3.5.7 allows remote attackers to inject arbitrary web script or HTML via the viewname parameter.
Affected Software
1 affected component
Ganglia Ganglia-web=3.5.7
Remediation
Event History
Apr 2, 2014
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Data Sourced
via NVD·04:05 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-1770?
CVE-2013-1770 is classified as a medium-severity vulnerability due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2013-1770?
To fix CVE-2013-1770, you should upgrade your Ganglia Web installation to a version that is not vulnerable, specifically versions above 3.5.7.
3
What type of vulnerability is CVE-2013-1770?
CVE-2013-1770 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web scripts or HTML.
4
Who is affected by CVE-2013-1770?
CVE-2013-1770 affects all users of Ganglia Web version 3.5.7.
5
What is the impact of CVE-2013-1770?
The impact of CVE-2013-1770 includes potential data theft or site manipulation through the execution of malicious scripts.