Cross-site Scripting Vulnerability in IBM Security Access Manager for Web
CVE-2015-8531
6.1MEDIUM
Key Information:
- Vendor
- IBM
- Vendor
- CVE Published:
- 15 February 2016
Summary
A cross-site scripting vulnerability exists in IBM Security Access Manager for Web which allows remote attackers to inject malicious web scripts or HTML through specially crafted URLs. This can potentially lead to unauthorized access and the execution of harmful scripts within a user's browser, putting sensitive user data at risk. Users are encouraged to upgrade to the latest patched versions to mitigate this vulnerability.
References
CVSS V3.1
Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved