Vulnerability Bulletins

IBM Security Bulletin: IBM Sterling Order Management is affected by Cross Site Scripting (XSS) Vulnerability (CVE-2014-0932)

   
Affected software IBM
 
IBM Sterling Order Management is vulnerable to a cross-site scripting attack which could lead to unauthorized access through the injected scripts. CVE(s): CVE-2014-0932 Affected product(s) and affected version(s): IBM Sterling Order Management 8.5 IBM Sterling Selling and Fulfillment Foundation 9.0 Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg21670912 X-Force Database:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/april_21_2014_10_37_am?lang=en_us