Cross-Site Scripting Vulnerabilities in IBM Case Manager
CVE-2015-1979

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
20 July 2015

Summary

IBM Case Manager 5.2.1 prior to version 5.2.1.2 is susceptible to multiple cross-site scripting (XSS) vulnerabilities. These vulnerabilities allow remote authenticated users to inject arbitrary web scripts or HTML through the addressability or comments components of the error dialog. Exploitation of these flaws could lead to unauthorized actions or exposure of sensitive information.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.