CVE-2013-5376: IBM Storwize v7000 Unified
Medium severity, CVSS 4.3. EPSS: 0.9% chance of exploitation in the next 30 days.
Cross-site scripting (XSS) vulnerability in IBM Storwize V7000 Unified 1.3.x and 1.4.x before 1.4.2.0 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, related to a "cross frame scripting" attack against an administrative user.
Affected products
- IBM Storwize v7000 Unified
- IBM Storwize v7000 Unified Software: version 1.3.0.0 only; version 1.3.2.0 only; version 1.3.2.3 only; version 1.4.0.0 only; version 1.4.0.4 only; version 1.4.1.0 only; …
Published 2013-10-17. Last modified 2026-06-16.