CVE-2013-0506

IBM Sterling Order Management <9.2.0 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in IBM Sterling Order Management 8.0 before HF127, 8.5 before HF89, 9.0 before HF69, 9.1.0 before FP41, and 9.2.0 before FP13 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.

Scores

EPSS 0.0027
EPSS Percentile 49.9%

Details

CWE
CWE-79
Status published
Products (6)
ibm/sterling_multi-channel_fulfillment_solution
ibm/sterling_selling_and_fulfillment_foundation
ibm/sterling_selling_and_fulfillment_foundation
ibm/sterling_selling_and_fulfillment_foundation
ibm/sterling_selling_and_fulfillment_foundation
n/a/n/a
Published Mar 19, 2013
Tracked Since Feb 18, 2026