CVE-2013-5406: XSS
Multiple cross-site scripting (XSS) vulnerabilities in IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 allow remote authenticated users to inject arbitrary web script or HTML via unspecified parameters, leading to improper interaction with the Windows MHTML protocol handler.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5406?
CVE-2013-5406 is classified as a medium to high severity vulnerability due to its potential for unauthorized script execution.
How do I fix CVE-2013-5406?
To fix CVE-2013-5406, upgrade to the latest versions of IBM Sterling B2B Integrator and Sterling File Gateway that contain the necessary security patches.
What systems are impacted by CVE-2013-5406?
CVE-2013-5406 affects IBM Sterling B2B Integrator version 5.2 and IBM Sterling File Gateway version 2.2.
Can CVE-2013-5406 be exploited by unauthenticated users?
No, CVE-2013-5406 requires remote authenticated users to perform the exploitation.
What types of attacks can CVE-2013-5406 facilitate?
CVE-2013-5406 can facilitate cross-site scripting (XSS) attacks, allowing attackers to inject arbitrary web script or HTML.