Cross-Site Scripting Vulnerability in IBM ENOVIA SmarTeam Product
CVE-2010-0959

Currently unrated

Key Information:

Vendor

IBM

Vendor
CVE Published:
10 March 2010

What is CVE-2010-0959?

The IBM ENOVIA SmarTeam 5 has a cross-site scripting vulnerability located in the WebEditor/Authentication/LoginPage.aspx file. This flaw allows remote attackers to inject arbitrary web scripts or HTML by exploiting the errMsg parameter. If successful, such attacks can lead to executing malicious scripts in the context of the user's session, potentially compromising sensitive user data and exposing the website to further attacks.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.