PT-2013-1854 · Ibm · Netezza Webadmin

Published

2013-02-20

·

Updated

2017-08-29

·

CVE-2012-5941

CVSS v2.0

3.5

Low

VectorAV:N/AC:M/Au:S/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions IBM Netezza WebAdmin application versions 6.0.5, 6.0.8, and 7.0 before P2
Description The issue allows remote authenticated users to inject content and conduct phishing attacks via unspecified vectors. This is due to a cross-site scripting (XSS) vulnerability in the WebAdmin application.
Recommendations For versions 6.0.5 and 6.0.8, update to a version that includes the P2 patch or later. For version 7.0 before P2, update to version 7.0 P2 or later. As a temporary workaround, consider restricting access to the WebAdmin application until a patch is applied.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2012-5941

Affected Products

Netezza Webadmin