PT-2012-2810 · Ibm · Ibm Ilog Jviews Gantt+1
Publicado
2012-03-02
·
Atualizado
2017-08-29
·
CVE-2012-0715
CVSS v2.0
4.3
Média
| Vetor | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Tivoli Change and Configuration Management Database (CCMDB) version 7.2.1
IBM ILOG JViews Gantt (affected versions not specified)
Description
A cross-site scripting (XSS) issue exists, allowing remote attackers to inject arbitrary web script or HTML. This could potentially lead to unauthorized actions on the affected system.
Recommendations
For IBM Tivoli Change and Configuration Management Database (CCMDB) version 7.2.1: Update to a version that includes a fix for this issue, if available.
For IBM ILOG JViews Gantt: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
XSS
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Ilog Jviews Gantt
Ibm Tivoli Change/Configuration Management Database