CVE-2024-28781 Information
May 15, 2024
cve
Description
IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.20 7.1 through 7.1.2.16 7.2 through 7.2.3.9 7.3 through 7.3.2.4 and 8.0 through 8.0.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 285654.
Reference
https://www.ibm.com/support/pages/node/7150747 https://exchange.xforce.ibmcloud.com/vulnerabilities/285654
Share on: