Required CVE Record Information
Description
Cross-site request forgery (CSRF) vulnerability in birtviewer.query in IBM TRIRIGA Application Platform 3.2 and 3.3 before 3.3.0.2, 3.3.1 before 3.3.1.3, 3.3.2 before 3.3.2.2, and 3.4 before 3.4.0.1 allows remote authenticated users to hijack the authentication of arbitrary users for requests that insert XSS sequences.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- exchange.xforce.ibmcloud.com: ibm-tririga-cve20144839-csrf(95635) vdb-entryx_transferred
- http://www-01.ibm.com/support/docview.wss?uid=swg21686241 x_transferred