Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2013-3979

EPSS 0.21% · P43
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2013-3979

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in the help pages in Web\Content\Help\ in the Web Client in IBM Cognos Command Center (aka Star Command Center or Star Analytics) before 10.1, when Internet Explorer is used, allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
IBM Cognos Command Center 跨站脚本漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
IBM Cognos Command Center(又名Star Command Center或Star Analytics)是美国IBM公司的财务绩效管理解决方案中的一套为混合环境和异构应用程序提供自动化功能的组件。 IBM Cognos Command Center (又名Star Command Center或Star Analytics)10.1之前的版本中的Web Client中的Web\Content\Help\目录下的帮助页面中存在多个跨站脚本漏洞。当使用IE浏览器时,远程经过授权的攻击者可
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2013-3979

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2013-3979

登录查看更多情报信息。

Same Patch Batch · n/a · 2013-07-24 · 7 CVEs total

CVE-2013-3438Cisco Unified MeetingPlace Web Conferencing 权限许可和访问控制漏洞
CVE-2012-6578Best Practical Solutions RT 加密问题漏洞
CVE-2012-6579Best Practical Solutions RT 加密问题漏洞
CVE-2012-6580Best Practical Solutions RT 加密问题漏洞
CVE-2012-6581Best Practical Solutions RT 权限许可和访问控制漏洞
CVE-2013-3999IBM Social Media Analytics 跨站脚本漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2013-3979

No comments yet


Leave a comment