Lucene search

K
cveIbmCVE-2013-0492
HistoryAug 09, 2013 - 11:55 p.m.

CVE-2013-0492

2013-08-0923:55:02
CWE-79
ibm
web.nvd.nist.gov
21
cve-2013-0492
cross-site scripting
xss
ibm
informix
open admin tool
oat
vulnerability
nvd

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

AI Score

5.2

Confidence

High

EPSS

0.001

Percentile

26.5%

Cross-site scripting (XSS) vulnerability in IBM Informix Open Admin Tool (OAT) 2.x and 3.x before 3.11.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.

Affected configurations

Nvd
Node
ibminformix_open_admin_toolMatch2.0
OR
ibminformix_open_admin_toolMatch3.0
VendorProductVersionCPE
ibminformix_open_admin_tool2.0cpe:2.3:a:ibm:informix_open_admin_tool:2.0:*:*:*:*:*:*:*
ibminformix_open_admin_tool3.0cpe:2.3:a:ibm:informix_open_admin_tool:3.0:*:*:*:*:*:*:*

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

AI Score

5.2

Confidence

High

EPSS

0.001

Percentile

26.5%

Related for CVE-2013-0492