XSS Vulnerability in IBM InfoSphere Master Data Management Server
CVE-2014-8899

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
22 December 2014

Summary

This flaw allows remote authenticated users to exploit the Collaboration Server in IBM InfoSphere Master Data Management, injecting arbitrary web scripts or HTML through crafted URLs. The vulnerability affects multiple versions across the product line and poses a significant risk by enabling unauthorized script execution in the context of another user’s session.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.