Description
IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190459.
Remediation
References
Related Vulnerabilities
WordPress Plugin Mingle Forum Multiple Cross-Site Request Forgery Vulnerabilities (1.0.34)
Plone CMS Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2012-5485)
PostgreSQL Untrusted Search Path Vulnerability (CVE-2020-14350)
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-43559)