Cross-Site Scripting Vulnerability in IBM Tivoli Storage Manager Operations Center
CVE-2016-6046
5.4MEDIUM
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 1 February 2017
What is CVE-2016-6046?
The Tivoli Storage Manager Operations Center by IBM is vulnerable to cross-site scripting (XSS) attacks, which could allow an attacker to inject malicious JavaScript into the web user interface. This vulnerability enables unauthorized users to manipulate the behavior of the application, potentially resulting in the disclosure of sensitive user credentials within a trusted browsing session. Maintaining robust web security measures is crucial to protect against such vulnerabilities.
Affected Version(s)
Tivoli Storage Manager Extended Edition 6.4
Tivoli Storage Manager Extended Edition 7.1
Tivoli Storage Manager Extended Edition 7.1.1