CVE-2013-5379: XSS
Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 7.x before 7.0.0.2 CF25 and 8.x before 8.0.0.1 CF8 allows remote authenticated users to inject arbitrary web script or HTML by leveraging improper tagging functionality.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5379?
CVE-2013-5379 is classified as a medium severity vulnerability due to its potential for cross-site scripting (XSS) attacks.
How do I fix CVE-2013-5379?
To fix CVE-2013-5379, ensure that your IBM WebSphere Portal is updated to version 7.0.0.2 CF25 or 8.0.0.1 CF8 or later.
Who is affected by CVE-2013-5379?
CVE-2013-5379 affects IBM WebSphere Portal versions 7.0.0.0, 7.0.0.1, 7.0.0.2, 8.0.0.0, and 8.0.0.1.
What type of vulnerability is CVE-2013-5379?
CVE-2013-5379 is a cross-site scripting (XSS) vulnerability that allows remote authenticated users to inject arbitrary script or HTML.
Can CVE-2013-5379 be exploited remotely?
Yes, CVE-2013-5379 can be exploited remotely by authenticated users through improper tagging functionality.