PT-2018-4409 · Ibm · Ibm Infosphere Master Data Management - Collaborative Edition

Published

2018-03-26

·

Updated

2018-04-19

·

CVE-2015-7423

CVSS v2.0

3.5

Low

VectorAV:N/AC:M/Au:S/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions IBM InfoSphere Master Data Management (MDM) - Collaborative Edition versions 9.1 through 11.4
Description The issue allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, which can lead to multiple cross-site scripting (XSS) vulnerabilities.
Recommendations For versions 9.1 through 11.4, update to a version that includes the fix for this issue to prevent remote authenticated users from injecting arbitrary web script or HTML.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-7423

Affected Products

Ibm Infosphere Master Data Management - Collaborative Edition