XSS Vulnerability in IBM InfoSphere Master Data Management Server
CVE-2014-8899
Currently unrated
Key Information:
- Vendor
- IBM
- Vendor
- CVE Published:
- 22 December 2014
Summary
This flaw allows remote authenticated users to exploit the Collaboration Server in IBM InfoSphere Master Data Management, injecting arbitrary web scripts or HTML through crafted URLs. The vulnerability affects multiple versions across the product line and poses a significant risk by enabling unauthorized script execution in the context of another user’s session.
References
Timeline
Vulnerability published
Vulnerability Reserved