Description
Cross-site scripting (XSS) vulnerability in SPS/Portal/default.aspx in Service Desk in Matrix42 Service Store 5.3 SP3 (aka 5.33.946.0) allows remote attackers to inject arbitrary web script or HTML via the query string.
Exploits (1)
References (2)
Core 2
Core References
Exploit mailing-list
x_refsource_fulldisc
http://seclists.org/fulldisclosure/2013/Apr/153
Third Party Advisory mailing-list
x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2013-04/0196.html
Scores
EPSS
0.0091
EPSS Percentile
76.0%
Details
CWE
CWE-79
Status
published
Products (1)
matrix42/service_store
5.3 sp3
Published
Dec 29, 2013
Tracked Since
Feb 18, 2026