CVE-2013-0548

IBM Tivoli Monitoring 6.2.0-6.2.3 - Cross-Site Scripting in Basic Services

Title source: llm
STIX 2.1

Description

Multiple cross-site scripting (XSS) vulnerabilities in the Basic Services component in IBM Tivoli Monitoring (ITM) 6.2.0 through FP3, 6.2.1 through FP4, 6.2.2 through FP9, and 6.2.3 before FP3, as used in IBM Application Manager for Smart Business (formerly Tivoli Foundations Application Manager) 1.2.1 before 1.2.1.0-TIV-IAMSB-FP0004 and other products, allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

References (7)

Core 7
Core References
Various Sources vendor-advisory x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=swg1IV40115
Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21635080
Various Sources vendor-advisory x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=swg1IV30187
Various Sources vendor-advisory x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=swg1IV27192
Various Sources vendor-advisory x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=swg1IV40116
Various Sources x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21640752
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/82767

Scores

EPSS 0.0132
EPSS Percentile 68.0%

Details

CWE
CWE-79
Status published
Products (23)
ibm/application_manager_for_smart_business 1.2.1
ibm/tivoli_monitoring 6.2.0
ibm/tivoli_monitoring 6.2.0.1
ibm/tivoli_monitoring 6.2.0.2
ibm/tivoli_monitoring 6.2.0.3
ibm/tivoli_monitoring 6.2.1
ibm/tivoli_monitoring 6.2.1.1
ibm/tivoli_monitoring 6.2.1.2
ibm/tivoli_monitoring 6.2.1.3
ibm/tivoli_monitoring 6.2.1.4
... and 13 more
Published Jun 21, 2013
Tracked Since Feb 18, 2026