CVE-2013-5379

IBM WebSphere Portal <7.0.0.2-8.0.0.1 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 7.x before 7.0.0.2 CF25 and 8.x before 8.0.0.1 CF8 allows remote authenticated users to inject arbitrary web script or HTML by leveraging improper tagging functionality.

Scores

EPSS 0.0019
EPSS Percentile 40.4%

Details

CWE
CWE-79
Status published
Products (6)
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
n/a/n/a
Published Nov 13, 2013
Tracked Since Feb 18, 2026