CVE-2013-4713

Cross-site scripting (XSS) vulnerability in I-O DATA DEVICE RockDisk with firmware before 1.05e1-2.0.5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Cross-site Scripting
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
3.5 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:S/C:N/I:P/A:N
jpcertCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 40%
VendorProductVersion
iodatarockdisk_firmware
𝑥
≤ 1.05c-2.0.3
iodatarockdisk_firmware
1.03v3-1.13:v3
iodatarockdisk_firmware
1.03w-1.14:w
iodatarockdisk_firmware
1.03y-1.16:y
iodatarockdisk_firmware
1.04a-1.2:a
iodatarockdisk_firmware
1.04b-1.21:b
iodatarockdisk_firmware
1.04d-2.0.1:d
iodatarockdisk_firmware
1.04m-2.0.1:m
iodatarockdisk_firmware
1.04n-2.0.1:n
iodatarockdisk_firmware
1.04r3-2.0.1:r3
iodatarockdisk_firmware
1.04t-2.0.2:t
iodatarockdisk
-
𝑥
= Vulnerable software versions