PT-2013-2359 · Ibm · Ibm Eclipse Help System+1
Published
2013-06-03
·
Updated
2017-08-29
·
CVE-2013-0464
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Eclipse Help System versions 3.4.3 through 3.6.2
IBM SPSS Data Collection versions 6.0 through 7.0
Description
The issue allows remote attackers to inject arbitrary web script or HTML via a crafted URL, potentially leading to cross-site scripting (XSS) attacks.
Recommendations
For IBM Eclipse Help System versions 3.4.3 through 3.6.2, update to a version that includes the fix for this issue.
For IBM SPSS Data Collection versions 6.0 through 7.0, update to a version that includes the fix for this issue.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Eclipse Help System
Ibm Spss Data Collection