CVE-2013-0549

IBM WebSphere Portal <8.0.0.1 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in the Web Content Manager - Web Content Viewer Portlet in the server in IBM WebSphere Portal 7.0.0.x through 7.0.0.2 CF22 and 8.0.0.x through 8.0.0.1 CF5, when the IBM Portlet API is used, allows remote attackers to inject arbitrary web script or HTML via a crafted URL.

Scores

EPSS 0.0027
EPSS Percentile 49.9%

Details

CWE
CWE-79
Status published
Products (35)
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
... and 25 more
Published Jun 03, 2013
Tracked Since Feb 18, 2026