Vulnerability Bulletins |
IBM Security Bulletin: IBM Cúram Social Program Management is vulnerable to cross site scripting attack(CVE-2014-6191). |
|
| Affected software | IBM |
|
IBM Cúram Social Program Management is vulnerable to cross site scripting attack caused by improper validation and sanitization of user-supplied input. A remote attacker could exploit this vulnerability using a specially crafted URL to execute script in a victims Web browser within the security context of the hosting Web site, once the URL is clicked. The user’s session can be completely compromised, allowing an attacker to perform any action that the user can perform, monitor the More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_c%25C3%25BAram_social_program_management_is_vulnerable_to_cross_site_scripting_attack_cve_2014_6191?lang=en_us |
|






