Back to Database
Status published
Medium
CVE-2013-1770
Cross-site scripting (XSS) vulnerability in views_view.php in Ganglia Web 3.5.7...
Vulnerability Description
Cross-site scripting (XSS) vulnerability in views_view.php in Ganglia Web 3.5.7 allows remote attackers to inject arbitrary web script or HTML via the view_name parameter.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2013-1770
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.openwall.com/lists/oss-security/2013/02/26/11
- https://github.com/ganglia/ganglia-web/commit/552965f33bf79d41ccbec3f1f26840c8bab54ad6
- https://exchange.xforce.ibmcloud.com/vulnerabilities/82468
- http://www.openwall.com/lists/oss-security/2013/02/21/12
- http://secunia.com/advisories/52673
- https://github.com/ganglia/ganglia-web/issues/160
- https://bugzilla.redhat.com/show_bug.cgi?id=892823
More from ganglia
View All →CVE-2019-20379
ganglia-web (aka Ganglia Web Frontend) through 3.7.5 allows XSS via...
Medium
6.1
CVE-2019-20378
ganglia-web (aka Ganglia Web Frontend) through 3.7.5 allows XSS via...
Medium
6.1
CVE-2013-6395
Cross-site scripting (XSS) vulnerability in header.php in Ganglia Web 3.5.8...
Medium
4.3
CVE-2013-0275
Multiple cross-site scripting (XSS) vulnerabilities in Ganglia Web before 3.5.6...
Medium
4.3
CVE-2012-3448
Unspecified vulnerability in Ganglia Web before 3.5.1 allows remote attackers...
High
7.5
Affected Vendor
ganglia
View all reports →Affected Software
ganglia-web
Vulnerable Versions:
3.5.7
Timeline
Official Publish:
April 2nd, 2014
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.