← Back

CVE-2013-4007

nvd nist
Published: Aug 16, 2013Modified: Apr 29, 2026

JSON object

Loading...
3.5
Vector
AV:N/AC:M/Au:S/C:N/I:P/A:N
Exploitability: 6.8 / Impact: 2.9
Source: NVD

Description

Cross-site scripting (XSS) vulnerability in adv_sw.php in the Advanced Management Module (AMM) with firmware BBET before BBET64G and BPET before BPET64G for IBM BladeCenter systems allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected (39)

1 product
Advanced Management Module
Configuration A
39 vulnerable · 5 platform
Vulnerable SoftwareAffected Versions
Ibm
Up to 3.54
Up to 2.48
Version 1.00
Version 1.01
Version 1.20
Version 1.20 f
Version 1.25
Version 1.25 e
Version 1.25 i
Version 1.26 b
Version 1.26 e
Version 1.26 h
Version 1.26 i
Version 1.26 k
Version 1.28 g
Version 1.32 d
Version 1.34 b
Version 1.34 e
Version 1.36 d
Version 1.36 g
Version 1.36 h
Version 1.36 k
Version 1.42 d
Version 1.42 f
Version 1.42 i
Version 1.42 n
Version 1.42 o
Version 1.42 t
Version 2.46 c
Version 2.46 j
Version 2.48 c
Version 2.48 d
Version 2.48 g
Version 2.48 n
Version 2.50 c
Version 2.50 g
Version 2.50 k
Version 2.50 p
Version 3.54 d
Running on/withPlatform Versions
Ibm
Bladecenter
Version hs22
Ibm
Bladecenter
Version hs22v
Ibm
Bladecenter
Version hs23
Ibm
Bladecenter
Version hs23e
Ibm
Bladecenter
Version hx5

References (4)

Timeline

No history available yet.