Cross-Site Scripting Vulnerability in IBM SPSS Analytic Server
CVE-2018-1772 
5.4MEDIUM
What is CVE-2018-1772?
IBM SPSS Analytic Server version 3.1.1.1 is susceptible to a cross-site scripting vulnerability, wherein an attacker can inject arbitrary JavaScript within the Web UI. This capability enables the potential manipulation of the application's functionality, which may lead to serious security implications such as credential disclosure during trusted sessions.