Lucene search

K
cvelistIbmCVELIST:CVE-2013-0460
HistoryJan 27, 2013 - 6:00 p.m.

CVE-2013-0460

2013-01-2718:00:00
ibm
www.cve.org
7

AI Score

6.2

Confidence

High

EPSS

0.001

Percentile

44.8%

Cross-site request forgery (CSRF) vulnerability in the portlet subsystem in the administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47 and 7.0 before 7.0.0.27 allows remote attackers to hijack the authentication of arbitrary users for requests that insert cross-site scripting (XSS) sequences.

AI Score

6.2

Confidence

High

EPSS

0.001

Percentile

44.8%

Related for CVELIST:CVE-2013-0460