CVE-2013-0566
IBM WebSphere Commerce <7.0.0.8 - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in the (1) Accelerator JSPs, (2) Organization Administration Console JSPs, and (3) Administration Console JSPs in WebSphere Commerce Tools in IBM WebSphere Commerce 5.6.1.0 through 5.6.1.5, 6.0.0.0 through 6.0.0.11, and 7.0.0.0 through 7.0.0.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Scores
EPSS
0.0027
EPSS Percentile
49.9%
Details
CWE
CWE-79
Status
published
Products (27)
ibm/websphere_commerce
ibm/websphere_commerce
ibm/websphere_commerce
ibm/websphere_commerce
ibm/websphere_commerce
ibm/websphere_commerce
ibm/websphere_commerce
ibm/websphere_commerce
ibm/websphere_commerce
ibm/websphere_commerce
... and 17 more
Published
Aug 27, 2013
Tracked Since
Feb 18, 2026