Vulnerability Description
Cross-site scripting (XSS) vulnerability in core/handleTw.php on the Siemens Enterprise OpenScape Branch appliance and OpenScape Session Border Controller (SBC) before 2 R0.32.0, and 7 before 7 R1.7.0, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Siemens | Openscape Session Border Controller | 1r4.17.0 |
| Siemens | Enterprise Openscape Branch | - |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/60555
- https://www.sec-consult.com/fxdata/seccons/prod/temedia/advisories_txt/20130614-
- http://www.securityfocus.com/bid/60555
- https://www.sec-consult.com/fxdata/seccons/prod/temedia/advisories_txt/20130614-
FAQ
What is CVE-2013-4779?
CVE-2013-4779 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Cross-site scripting (XSS) vulnerability in core/handleTw.php on the Siemens Enterprise OpenScape Branch appliance and OpenScape Session Border Controller (SBC) before 2 R0.32.0, and 7 before 7 R1.7.0...
How severe is CVE-2013-4779?
CVE-2013-4779 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-4779?
Check the references section above for vendor advisories and patch information. Affected products include: Siemens Openscape Session Border Controller, Siemens Enterprise Openscape Branch.