Beveiligingsadvies

CVE-2020-4564

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2020-10-20 14:15:32
Laatst bijgewerkt 2024-09-16 16:38:35
Toegewezen door ibm
CVSS-score 5.4
Status PUBLISHED

Beschrijving

IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.3.1 and IBM Sterling File Gateway 2.2.0.0 through 6.0.3.1 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 183933.