4.3
CVSSv2

CVE-2013-1823

Published: 02/04/2013 Updated: 13/02/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the Notifications form in Red Hat Subscription Asset Manager prior to 1.2.1 allows remote malicious users to inject arbitrary web script or HTML via the username field.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat subscription asset manager 1.1.0

redhat subscription asset manager 1.0.0

redhat subscription asset manager

Vendor Advisories

Synopsis Moderate: Subscription Asset Manager 121 update Type/Severity Security Advisory: Moderate Topic Red Hat Subscription Asset Manager 121, which fixes several securityissues, multiple bugs, and adds various enhancements, is now availableThe Red Hat Security Response Team has rated this update as ...
Cross-site scripting (XSS) vulnerability in the Notifications form in Red Hat Subscription Asset Manager before 121 allows remote attackers to inject arbitrary web script or HTML via the username field ...