CVE-2008-3161 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in jsp/common/system/debug.jsp in IBM Maximo 4.1 and 5.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Accept (2) Accept-Language (3) UA-CPU (4) Accept-Encoding (5) User-Agent or (6) Cookie HTTP header. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Reference

http://www.securityfocus.com/bid/30180 https://exchange.xforce.ibmcloud.com/vulnerabilities/43730

Share on: