CVE-2013-0518: IBM Sterling Secure Proxy

Medium severity, CVSS 4.3. EPSS: 0.8% chance of exploitation in the next 30 days.

IBM Sterling Secure Proxy 3.2.0 and 3.3.01 before 3.3.01.23 Interim Fix 1, 3.4.0 before 3.4.0.6 Interim Fix 1, and 3.4.1 before 3.4.1.7 does not refuse to be rendered in different-origin frames, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site.

Affected products

  • IBM Sterling Secure Proxy: version 3.2.0.0 only; version 3.3.0.1 only; version 3.4.0.0 only; version 3.4.1.0 only; version 3.4.1.2 only; version 3.4.1.5 only; …

Published 2013-05-10. Last modified 2026-06-16.