Vulnerability Bulletins

IBM Security Bulletin: IBM Content Collector affected by vulnerability in IBM Dojo Toolkit (CVE-2014-8917)

   
Affected software IBM
 
IBM Content Collector ships IBM Dojo Toolkit where the following files are exposed to cross-site scripting vulnerabilities: dojox/form/resources/fileuploader.swf, dojox/form/resources/uploader.swf, dojox/av/resources/audio.swf, and dojox/av/resources/video.swf CVE(s): CVE-2014-8917 Affected product(s) and affected version(s): IBM Content Collector 2.2 IBM Content Collector 3.0 Refer to the following reference URLs for remediation and additional vulnerability details: Source

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_content_collector_affected_by_vulnerability_in_ibm_dojo_toolkit_cve_2014_8917?lang=en_us