CVE-2013-5702: XSS
Published Oct 19, 2013
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in WebCenter in WatchGuard WSM and Fireware before 11.8 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters.
Affected Software
10 affected components
WatchGuard Fireware<=11.7.4
WatchGuard Fireware=11.6
WatchGuard Fireware=11.6.1
WatchGuard Fireware=11.6.3
WatchGuard Fireware=11.6.5
WatchGuard Fireware=11.6.6
WatchGuard Fireware=11.7
WatchGuard Fireware=11.7.2
WatchGuard Fireware=11.7.3
WatchGuard Watchguard System Manager
Event History
Oct 19, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-5702?
CVE-2013-5702 is classified as a medium-severity vulnerability due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2013-5702?
To fix CVE-2013-5702, upgrade the WatchGuard Fireware to version 11.8 or later.
3
What are the affected versions for CVE-2013-5702?
CVE-2013-5702 affects WatchGuard Fireware versions prior to 11.8, including versions 11.6 up to 11.7.4.
4
Can CVE-2013-5702 be exploited remotely?
Yes, CVE-2013-5702 can be exploited remotely by attackers who can inject arbitrary web scripts or HTML.
5
What is the impact of CVE-2013-5702 on my system?
CVE-2013-5702 allows attackers to execute malicious scripts in the context of the user’s browser, posing risks to user data.