Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2013-2980

EPSS 0.11% · P29
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2013-2980

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in the Web Console in IBM Data Studio 3.1.0 and 3.1.1 allows remote attackers to hijack the authentication of arbitrary users for requests that access monitored database information.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
IBM Data Studio Web Console 跨站请求伪造漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
IBM Data Studio是美国IBM公司的一套免费的用于DB2数据库的管理和开发工具。 IBM Data Studio 3.1.0和3.1.1版本中的Web Console中存在跨站请求伪造漏洞。远程攻击者可利用该漏洞劫持任意通过认证用户发送访问监控的数据库信息的请求。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2013-2980

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2013-2980

Please Login to view more intelligence information

Same Patch Batch · n/a · 2013-06-17 · 21 CVEs total

CVE-2013-4609REDCap 权限许可和访问控制问题漏洞
CVE-2013-3643Android平台的Galapagos Browser应用程序信息泄露漏洞
CVE-2013-3642Android平台的Angel Browser应用程序信息泄露漏洞
CVE-2013-3520VMware vCenter Chargeback Manager 代码注入漏洞
CVE-2013-3026IBM Lotus Quickr for Domino ActiveX Control 缓冲区溢出漏洞
CVE-2013-2310SoftBank Wi-Fi Spot Configuration Software 信息泄露漏洞
CVE-2013-2309OpenPNE 跨站脚本漏洞
CVE-2013-4612REDCap 多个跨站脚本漏洞
CVE-2013-4611REDCap 多个安全漏洞
CVE-2013-4610REDCap 数据输入表单Data Search工具安全漏洞
CVE-2012-6564REDCap 跨站脚本漏洞
CVE-2013-4608REDCap 跨站脚本漏洞
CVE-2013-2981IBM Data Studio 目录遍历漏洞
CVE-2013-1097Novell ZENworks Configuration Management 跨站脚本漏洞
CVE-2013-1095Novell ZENworks Configuration Management 反射XSS跨站脚本漏洞
CVE-2013-1094Novell ZENworks Configuration Management 跨站脚本漏洞
CVE-2013-1093Novell ZENworks Configuration Management 开放重定向漏洞
CVE-2012-6567REDCap 输入验证漏洞
CVE-2012-6566REDCap 跨站脚本漏洞
CVE-2012-6565REDCap 跨站脚本漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2013-2980

No comments yet


Leave a comment