Required CVE Record Information
Description
Cross-site scripting (XSS) vulnerability in IBM Storwize V7000 Unified 1.3.x and 1.4.x before 1.4.2.0 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, related to a "cross frame scripting" attack against an administrative user.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- http://www.ibm.com/support/docview.wss?uid=ssg1S1004452 x_transferred
- exchange.xforce.ibmcloud.com: storwize-v7000-cve20135376-crossframe(86902) vdb-entryx_transferred