2.6
CVSSv2

CVE-2013-0466

Published: 20/02/2013 Updated: 29/08/2017
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
VMScore: 231
Vector: AV:N/AC:H/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in IBM WebSphere Message Broker 7.0 prior to 7.0.0.6 and 8.0 prior to 8.0.0.2, when wsdl support is enabled on a SOAPInput node, allows remote malicious users to inject arbitrary web script or HTML via a wsdl request that is not properly handled during construction of an error message.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm websphere message broker 7.0.0.1

ibm websphere message broker 7.0.0.4

ibm websphere message broker 7.0.0.3

ibm websphere message broker 7.0.0.2

ibm websphere message broker 7.0.

ibm websphere message broker 7.0.0.5

ibm websphere message broker 8.0

ibm websphere message broker 8.0.0.1