Cross-Site Scripting Vulnerability in IBM Intelligent Operations Center Products
CVE-2020-4318
Key Information:
- Vendor
IBM
- Status
- Vendor
- CVE Published:
- 28 July 2020
What is CVE-2020-4318?
IBM Intelligent Operations Center products, including the Emergency Management and Water Operations solutions, are susceptible to a cross-site scripting (XSS) vulnerability. This flaw permits malicious users to inject arbitrary JavaScript code into the Web UI, potentially compromising the security of users' sessions. If exploited, it may enable the disclosure of sensitive credentials and alter the intended functionality of the affected applications, posing significant risks to users and data integrity.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Intelligent Operations Center 5.1.0
Intelligent Operations Center 5.1.0.2
Intelligent Operations Center 5.1.0.3
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved