First published: Sun Mar 16 2014(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in IBM InfoSphere Information Server 8.x through 8.5 FP3, 8.7.x through 8.7 FP2, and 9.1.x through 9.1.2.0 allow remote attackers to inject arbitrary web script or HTML via unspecified interfaces.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Information Server | =8.5 | |
IBM InfoSphere Information Server | =8.5.0.1 | |
IBM InfoSphere Information Server | =8.5.0.2 | |
IBM InfoSphere Information Server | =8.5.0.3 | |
IBM InfoSphere Information Server | =8.7 | |
IBM InfoSphere Information Server | =8.7.0.1 | |
IBM InfoSphere Information Server | =8.7.0.2 | |
IBM InfoSphere Information Server | =9.1 | |
IBM InfoSphere Information Server | =9.1.0.1 | |
IBM InfoSphere Information Server | =9.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-4059 is considered a high-severity vulnerability due to the potential for remote attackers to execute arbitrary scripts.
To fix CVE-2013-4059, it is recommended to apply the latest security patches provided by IBM for affected versions of InfoSphere Information Server.
CVE-2013-4059 affects IBM InfoSphere Information Server versions 8.x through 8.5 FP3, 8.7.x through 8.7 FP2, and 9.1.x through 9.1.2.0.
Yes, CVE-2013-4059 can potentially lead to data breaches if an attacker successfully exploits the XSS vulnerabilities.
CVE-2013-4059 is associated with cross-site scripting (XSS) attacks, allowing injection of malicious web scripts.