CVE-2013-4057
EUVD-2013-398816.03.2014, 14:06
Cross-site request forgery (CSRF) vulnerability in the XML Pack in IBM InfoSphere Information Server 8.5.x through 8.5 FP3, 8.7.x through 8.7 FP2, and 9.1.x through 9.1.2.0 allows remote attackers to hijack the authentication of arbitrary users.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ibm | infosphere_information_server | 8.5 |
| ibm | infosphere_information_server | 8.5.0.1 |
| ibm | infosphere_information_server | 8.5.0.2 |
| ibm | infosphere_information_server | 8.5.0.3 |
| ibm | infosphere_information_server | 8.7 |
| ibm | infosphere_information_server | 8.7.0.1 |
| ibm | infosphere_information_server | 8.7.0.2 |
| ibm | infosphere_information_server | 9.1 |
| ibm | infosphere_information_server | 9.1.0.1 |
| ibm | infosphere_information_server | 9.1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References