CVE-2013-6333: XSS
Cross-site scripting (XSS) vulnerability in IBM Algo One, as used in MetaData Management Tools in UDS 4.7.0 through 5.0.0, ACSWeb in Algo Security Access Control Management 4.7.0 through 4.9.0, and ACSWeb in AlgoWebApps 5.0.0, allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2013-6299, CVE-2013-6300, CVE-2013-6301, and CVE-2013-6320.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6333?
CVE-2013-6333 is classified as a medium severity cross-site scripting vulnerability.
How do I fix CVE-2013-6333?
To fix CVE-2013-6333, update IBM Algo One to a version that addresses this vulnerability.
Who is affected by CVE-2013-6333?
CVE-2013-6333 affects users of IBM Algo One versions 4.7.0 through 5.0.0 and several related management tools.
What type of attack can occur due to CVE-2013-6333?
CVE-2013-6333 allows remote authenticated users to execute arbitrary web scripts or HTML, leading to potential data theft or session hijacking.
Is authentication required to exploit CVE-2013-6333?
Yes, CVE-2013-6333 requires an attacker to have authenticated access to exploit the vulnerability.