Description
IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 194708.
Remediation
References
Related Vulnerabilities
MySQL CVE-2016-5440 Vulnerability (CVE-2016-5440)
WordPress Plugin GigPress 'Notes' Field HTML Injection (2.1.10)
WordPress Plugin SP Project & Document Manager Arbitrary File Upload (4.21)
WordPress Plugin QR Redirector Security Bypass (1.5)
PrestaShop Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-5682)