CVE-2013-0805
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Multiple cross-site scripting (XSS) vulnerabilities in the search feature in iTop (aka IT Operations Portal) 2.0, 1.2.1, 1.2, and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) text parameter to pages/UI.php or (2) expression parameter to pages/run_query.php. NOTE: some of these details are obtained from third party information.
Múltiples vulnerabilidades de XSS en la funcionalidad de búsqueda en iTop (también conocido como IT Operations Portal) 2.0, 1.2.1, 1.2 y anteriores permiten a atacantes remotos inyectar script Web o HTML arbitrarios a través del (1) parámetro text hacia pages/UI.php o (2) parámetro expression hacia pages/run_query.php. NOTA: algunos de estos detalles se obtiene de información de terceras partes.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2013-01-05 CVE Reserved
- 2013-01-23 CVE Published
- 2023-10-31 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (7)
URL | Tag | Source |
---|---|---|
http://archives.neohapsis.com/archives/fulldisclosure/2013-01/0208.html | Mailing List | |
http://osvdb.org/89574 | Vdb Entry | |
http://packetstormsecurity.com/files/119767/iTop-Cross-Site-Scripting.html | X_refsource_misc | |
http://seclists.org/bugtraq/2013/Jan/102 | Mailing List | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/81498 | Vdb Entry | |
https://www.csnc.ch/misc/files/advisories/CVE-2013-0805.txt | X_refsource_misc |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/51702 | 2017-08-29 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | <= 2.0 Search vendor "Combodo" for product "Itop" and version " <= 2.0" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 0.7.1 Search vendor "Combodo" for product "Itop" and version "0.7.1" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 0.7.2 Search vendor "Combodo" for product "Itop" and version "0.7.2" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 0.8 Search vendor "Combodo" for product "Itop" and version "0.8" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 0.8.1.3 Search vendor "Combodo" for product "Itop" and version "0.8.1.3" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 0.9 Search vendor "Combodo" for product "Itop" and version "0.9" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 0.9 Search vendor "Combodo" for product "Itop" and version "0.9" | beta |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 0.9.1 Search vendor "Combodo" for product "Itop" and version "0.9.1" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.0 Search vendor "Combodo" for product "Itop" and version "1.0" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.0 Search vendor "Combodo" for product "Itop" and version "1.0" | beta |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.0.1 Search vendor "Combodo" for product "Itop" and version "1.0.1" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.0.2 Search vendor "Combodo" for product "Itop" and version "1.0.2" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.0.2 Search vendor "Combodo" for product "Itop" and version "1.0.2" | beta |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.1 Search vendor "Combodo" for product "Itop" and version "1.1" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.1 Search vendor "Combodo" for product "Itop" and version "1.1" | beta |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.1.181 Search vendor "Combodo" for product "Itop" and version "1.1.181" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.2 Search vendor "Combodo" for product "Itop" and version "1.2" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.2 Search vendor "Combodo" for product "Itop" and version "1.2" | beta |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.2.0 Search vendor "Combodo" for product "Itop" and version "1.2.0" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.2.0 Search vendor "Combodo" for product "Itop" and version "1.2.0" | rc282 |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.2.1 Search vendor "Combodo" for product "Itop" and version "1.2.1" | - |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 1.2.1 Search vendor "Combodo" for product "Itop" and version "1.2.1" | beta |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 2.0 Search vendor "Combodo" for product "Itop" and version "2.0" | beta |
Affected
| ||||||
Combodo Search vendor "Combodo" | Itop Search vendor "Combodo" for product "Itop" | 2.0 Search vendor "Combodo" for product "Itop" and version "2.0" | beta2 |
Affected
|