Cross-Site Scripting in IBM Curam Social Program Management
CVE-2017-1106
What is CVE-2017-1106?
IBM Curam Social Program Management versions 5.2, 6.0, and 7.0 are susceptible to a cross-site scripting vulnerability. Attackers can exploit this flaw to embed malicious JavaScript code within the web interface, potentially altering its functionality and leading to unauthorized disclosure of user credentials during a trusted session. Users of the affected versions should take immediate action to mitigate the risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cram Social Program Management 6.0.4
Cram Social Program Management 6.0.5
Cram Social Program Management 6.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved