Cross-Site Scripting Vulnerability in IBM Campaign
CVE-2016-0265
5.4MEDIUM
What is CVE-2016-0265?
IBM Campaign is susceptible to cross-site scripting due to inadequate validation of user-supplied input. This vulnerability enables a remote attacker to craft a malicious URL that, when clicked by a victim, executes scripts in their web browser under the security context of the site. This can lead to the theft of cookie-based authentication credentials, potentially compromising user accounts and sensitive information.
Affected Version(s)
Campaign 7.0
Campaign 7.1
Campaign 7.2