Arbitrary Web Script Injection in IBM InfoSphere Master Data Management Server for Product Information Management and Collaborative Edition

Arbitrary Web Script Injection in IBM InfoSphere Master Data Management Server for Product Information Management and Collaborative Edition

CVE-2013-4036 · LOW Severity

AV:N/AC:M/AU:S/C:N/I:P/A:N

Cross-site scripting (XSS) vulnerability in IBM InfoSphere Master Data Management Server for Product Information Management 9.x before 9.1 FP13, and IBM InfoSphere Master Data Management - Collaborative Edition 10.x before 10.1 FP7 and 11.0 before FP2, allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.

Learn more about our Cis Benchmark Audit For Ibm I.