CVE-2011-1395 Information

Description

Cross-site scripting (XSS) vulnerability in imicon.jsp in IBM Maximo Asset Management and Asset Management Essentials 6.2 7.1 and 7.5 allows remote attackers to inject arbitrary web script or HTML via the controlid parameter.

Reference

http://secunia.com/advisories/48299 http://www.ibm.com/support/docview.wss?uid=swg21584666 http://www.securityfocus.com/bid/52333 http://www-01.ibm.com/support/docview.wss?uid=swg1IV09189 https://exchange.xforce.ibmcloud.com/vulnerabilities/71996

Share on: