Required CVE Record Information
Description
Multiple cross-site scripting (XSS) vulnerabilities in the Error dialog in IBM Case Manager 5.2.1 before 5.2.1.2 allow remote authenticated users to inject arbitrary web script or HTML via crafted input to the (1) addressability or (2) comments component.
References 2 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- http://www-01.ibm.com/support/docview.wss?uid=swg21959695 x_transferred
- securityfocus.com: 75538 vdb-entryx_transferred