CVE-2013-0506
IBM Sterling Order Management <9.2.0 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in IBM Sterling Order Management 8.0 before HF127, 8.5 before HF89, 9.0 before HF69, 9.1.0 before FP41, and 9.2.0 before FP13 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Scores
EPSS
0.0027
EPSS Percentile
49.9%
Details
CWE
CWE-79
Status
published
Products (6)
ibm/sterling_multi-channel_fulfillment_solution
ibm/sterling_selling_and_fulfillment_foundation
ibm/sterling_selling_and_fulfillment_foundation
ibm/sterling_selling_and_fulfillment_foundation
ibm/sterling_selling_and_fulfillment_foundation
n/a/n/a
Published
Mar 19, 2013
Tracked Since
Feb 18, 2026