PT-2013-2434 · Ibm · Ibm Document Connect For Application Support Facility

Published

2013-04-27

·

Updated

2017-08-29

·

CVE-2013-0572

CVSS v2.0

2.3

Low

VectorAV:A/AC:M/Au:S/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions IBM Document Connect for Application Support Facility (DC4ASF) versions prior to 1.0.0.1218
Description The issue allows remote authenticated users to inject content and conduct phishing attacks via unspecified vectors, due to a cross-site scripting (XSS) vulnerability. This enables attackers to potentially deceive users into revealing sensitive information.
Recommendations For versions prior to 1.0.0.1218, update to version 1.0.0.1218 or later to resolve the issue.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-0572

Affected Products

Ibm Document Connect For Application Support Facility