3.5

CVE-2013-4007

Cross-site scripting (XSS) vulnerability in adv_sw.php in the Advanced Management Module (AMM) with firmware BBET before BBET64G and BPET before BPET64G for IBM BladeCenter systems allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IbmAdvanced Management Module Updatel Version <= 2.48
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Updateg Version <= 3.54
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.00
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.01
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.20
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.20 Updatef
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.25
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.25 Updatee
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.25 Updatei
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.26 Updateb
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.26 Updatee
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.26 Updateh
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.26 Updatei
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.26 Updatek
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.28 Updateg
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.32 Updated
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.34 Updateb
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.34 Updatee
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.36 Updated
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.36 Updateg
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.36 Updateh
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.36 Updatek
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.42 Updated
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.42 Updatef
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.42 Updatei
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.42 Updaten
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.42 Updateo
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version1.42 Updatet
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version2.46 Updatec
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version2.46 Updatej
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version2.48 Updatec
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version2.48 Updated
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version2.48 Updateg
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version2.48 Updaten
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version2.50 Updatec
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version2.50 Updateg
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version2.50 Updatek
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version2.50 Updatep
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
IbmAdvanced Management Module Version3.54 Updated
   IbmBladecenter Versionhs22
   IbmBladecenter Versionhs22v
   IbmBladecenter Versionhs23
   IbmBladecenter Versionhs23e
   IbmBladecenter Versionhx5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.424
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 3.5 6.8 2.9
AV:N/AC:M/Au:S/C:N/I:P/A:N
CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.