CVE Database
/

CVE-2013-0505

Back to search

CVE-2013-0505

Published: Mar 19, 2013

Modified: Aug 6, 2024

PUBLISHED

Description

IBM Sterling Order Management 8.0 before HF127, 8.5 before HF89, 9.0 before HF69, 9.1.0 before FP41, and 9.2.0 before FP13 allows remote authenticated users to conduct XPath injection attacks, and read arbitrary XML files, via unspecified vectors.

VendorProductVersions

n/a

n/a

affected
n/a

References

sterling-om-xpath-injection(82339)
vdb-entry
x_refsource_XF
ID358571
vendor-advisory
x_refsource_AIXAPAR

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now