CVE-2013-0535

Multiple cross-site scripting (XSS) vulnerabilities in the Classic Meeting Server in IBM Sametime 7.5.1.2 through 8.5.2.1 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Cross-site Scripting
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
3.5 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:S/C:N/I:P/A:N
ibmCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 38%
VendorProductVersion
ibmclassic_meeting_server
7.5.1.2
ibmclassic_meeting_server
8.0.1
ibmclassic_meeting_server
8.0.2
ibmclassic_meeting_server
8.5
ibmclassic_meeting_server
8.5.1.2
ibmclassic_meeting_server
8.5.2.1
ibmlotus_sametime
7.5.1.2
ibmlotus_sametime
8.0
ibmlotus_sametime
8.0.1
ibmlotus_sametime
8.0.1.1
ibmlotus_sametime
8.0.2
ibmlotus_sametime
8.0.2.1
ibmlotus_sametime
8.5
ibmlotus_sametime
8.5.1
ibmlotus_sametime
8.5.1.1
ibmlotus_sametime
8.5.2
ibmlotus_sametime
8.5.2.1
𝑥
= Vulnerable software versions