CVE-2013-0582
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Cross-site scripting (XSS) vulnerability in IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before 6.2.0.12, 6.2.1 before 6.2.1.5, and 6.2.2 before 6.2.2.4 and Tivoli Federated Identity Manager Business Gateway (TFIMBG) 6.2.0 before 6.2.0.12 and 6.2.1 before 6.2.1.5 allows remote attackers to inject arbitrary web script or HTML via a crafted URL that triggers a SAML 2.0 response.
Vulnerabilidad de ejecución de comandos en sitios cruzados (XSS) en IBM Tivoli Federated Identity Manager (TFIM) v6.2.0 antes de v6.2.0.12, v6.2.1 antes de v6.2.1.5, y v6.2.2 antes de v6.2.2.4 y Tivoli Federated Identity Manager Business Gateway (TFIMBG) v6.2.0 antes de v6.2.0.12 y v6.2.1 antes de v6.2.1.5 permite a atacantes remotos inyectar HTML o secuencias de comandos weba través de una URL debidamente modificada que dispara una respuesta SAML v2.0
CVSS Scores
SSVC
- Decision:-
Timeline
- 2012-12-16 CVE Reserved
- 2013-05-02 CVE Published
- 2024-09-17 CVE Updated
- 2024-09-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (4)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg1IV26033 | 2013-05-03 | |
http://www-01.ibm.com/support/docview.wss?uid=swg1IV26034 | 2013-05-03 | |
http://www-01.ibm.com/support/docview.wss?uid=swg1IV31640 | 2013-05-03 | |
http://www-01.ibm.com/support/docview.wss?uid=swg21635688 | 2013-05-03 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.0 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.0.1 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.0.1" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.0.2 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.0.2" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.0.3 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.0.3" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.0.8 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.0.8" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.0.9 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.0.9" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.0.10 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.0.10" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.0.11 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.0.11" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.1 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.1" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.1.1 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.1.1" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.1.2 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.1.2" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.1.3 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.1.3" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.1.4 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.1.4" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.2 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.2" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.2.2 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.2.2" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Search vendor "Ibm" for product "Tivoli Federated Identity Manager" | 6.2.2.3 Search vendor "Ibm" for product "Tivoli Federated Identity Manager" and version "6.2.2.3" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Business Gateway Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" | 6.2.0 Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" and version "6.2.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Business Gateway Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" | 6.2.0.1 Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" and version "6.2.0.1" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Business Gateway Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" | 6.2.0.2 Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" and version "6.2.0.2" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Business Gateway Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" | 6.2.0.3 Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" and version "6.2.0.3" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Business Gateway Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" | 6.2.0.8 Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" and version "6.2.0.8" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Business Gateway Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" | 6.2.0.9 Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" and version "6.2.0.9" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Business Gateway Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" | 6.2.0.10 Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" and version "6.2.0.10" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Business Gateway Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" | 6.2.0.11 Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" and version "6.2.0.11" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Business Gateway Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" | 6.2.1 Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" and version "6.2.1" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Business Gateway Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" | 6.2.1.3 Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" and version "6.2.1.3" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Federated Identity Manager Business Gateway Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" | 6.2.1.4 Search vendor "Ibm" for product "Tivoli Federated Identity Manager Business Gateway" and version "6.2.1.4" | - |
Affected
|