Cross-Site Scripting Vulnerability in IBM Tivoli Continuous Data Protection for Files
CVE-2009-1334
Currently unrated
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 17 April 2009
What is CVE-2009-1334?
A cross-site scripting vulnerability exists in the 'login/FilepathLogin.html' of IBM Tivoli Continuous Data Protection for Files version 3.1.4.0. This flaw allows remote attackers to inject arbitrary web scripts or HTML through the 'reason' parameter, potentially compromising the security of user sessions and sensitive information.