Description
IBM Security Access Manager 9.0.1 through 9.0.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 158573.
Remediation
References
Related Vulnerabilities
WordPress Plugin Auto Prune Posts Cross-Site Request Forgery (1.8.0)
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-0682)
WordPress Plugin Photo Gallery, Images, Slider in Rbs Image Gallery Cross-Site Scripting (3.2.12)
WordPress Plugin Essential Grid Portfolio-Photo Gallery Security Bypass (1.1.2)