![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2013-0460 |
Description: | Cross-site request forgery (CSRF) vulnerability in the portlet subsystem in the administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47 and 7.0 before 7.0.0.27 allows remote attackers to hijack the authentication of arbitrary users for requests that insert cross-site scripting (XSS) sequences. |
Test IDs: | 1.3.6.1.4.1.25623.1.0.806843 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2013-0460 AIX APAR: PM72275 http://www-01.ibm.com/support/docview.wss?uid=swg1PM72275 XForce ISS Database: was-admin-portlet-csrf(81014) https://exchange.xforce.ibmcloud.com/vulnerabilities/81014 |