Cross-Site Scripting Vulnerability in IBM Cognos Business Intelligence
CVE-2016-0346
5.4MEDIUM
What is CVE-2016-0346?
A Cross-Site Scripting (XSS) vulnerability exists in multiple versions of IBM Cognos Business Intelligence, allowing remote authenticated users to inject arbitrary web scripts or HTML. This can occur through crafted URLs, potentially leading to unauthorized actions being executed in the context of the affected user.