CVE-2013-5376: XSS
Cross-site scripting (XSS) vulnerability in IBM Storwize V7000 Unified 1.3.x and 1.4.x before 1.4.2.0 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, related to a "cross frame scripting" attack against an administrative user.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5376?
CVE-2013-5376 has a medium severity rating due to its potential for cross-site scripting attacks.
How do I fix CVE-2013-5376?
To fix CVE-2013-5376, upgrade the IBM Storwize V7000 Unified software to version 1.4.2.0 or later.
Who is affected by CVE-2013-5376?
CVE-2013-5376 affects remote authenticated users of IBM Storwize V7000 Unified versions 1.3.x and 1.4.x prior to 1.4.2.0.
What impact does CVE-2013-5376 have on my system?
CVE-2013-5376 can allow an attacker to inject arbitrary web scripts, potentially compromising sensitive information.
Is CVE-2013-5376 related to cross frame scripting?
Yes, CVE-2013-5376 is related to cross frame scripting attacks targeting administrative users.