Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2013-0464

Опубликовано: 03 июн. 2013
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

Multiple cross-site scripting (XSS) vulnerabilities in IBM Eclipse Help System (IEHS) 3.4.3 and 3.6.2, as used in IBM SPSS Data Collection 6.0, 6.0.1, and 7.0, allow remote attackers to inject arbitrary web script or HTML via a crafted URL.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:ibm:eclipse_help_system:3.4.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:eclipse_help_system:3.6.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:spss_data_collection:6.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:spss_data_collection:6.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:spss_data_collection:7.0:*:*:*:*:*:*:*

EPSS

Процентиль: 55%
0.00328
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-79

Связанные уязвимости

ubuntu
больше 12 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in IBM Eclipse Help System (IEHS) 3.4.3 and 3.6.2, as used in IBM SPSS Data Collection 6.0, 6.0.1, and 7.0, allow remote attackers to inject arbitrary web script or HTML via a crafted URL.

github
почти 4 года назад

Multiple cross-site scripting (XSS) vulnerabilities in IBM Eclipse Help System (IEHS) 3.4.3 and 3.6.2, as used in IBM SPSS Data Collection 6.0, 6.0.1, and 7.0, allow remote attackers to inject arbitrary web script or HTML via a crafted URL.

EPSS

Процентиль: 55%
0.00328
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-79