PT-2014-3958 · Ibm · Ibm Tivoli Service Automation Manager
Publicado
2014-10-07
·
Atualizado
2017-08-29
·
CVE-2014-0940
CVSS v2.0
4.3
Média
| Vetor | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Tivoli Service Automation Manager version 7.2.2.2
Description
The issue involves multiple cross-site scripting (XSS) vulnerabilities that allow remote attackers to inject arbitrary web script or HTML. This can be achieved through vectors involving the REST API or the Self Service UI.
Recommendations
For IBM Tivoli Service Automation Manager version 7.2.2.2, apply the fix 7.2.2.2-TIV-TSAM-LA0041 to resolve the issue.
Correção
XSS
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Tivoli Service Automation Manager