Cross-site Scripting Vulnerability in IBM Emptoris Sourcing Portfolio
CVE-2014-3033

Currently unrated

Key Information:

Vendor

IBM

Vendor
CVE Published:
26 August 2014

What is CVE-2014-3033?

A cross-site scripting vulnerability exists in IBM Emptoris Sourcing Portfolio versions prior to 9.5.1.3, 10.0.0.1, 10.0.1.3, and 10.0.2.4. This issue allows remote authenticated users to inject arbitrary web scripts or HTML through specially crafted URLs, potentially compromising the security of affected systems. Users are advised to review their security practices and upgrade to the patched versions to mitigate risks.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.