Security Advisory

CVE-2010-2433

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2010-06-23 19:00:00
Last updated 2024-08-07 02:32:16
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in content/internalError.jsp in IBM WebSphere ILOG JRules 6.7 allow remote attackers to inject arbitrary web script or HTML via an RTS URL to (1) explore/explore.jsp, (2) compose/compose.jsp, or (3) home.jsp in faces/.