Required CVE Record Information
Description
Cross-site scripting (XSS) vulnerability in a test page in IBM Business Process Manager Advanced 8.5.6.0 through 8.5.7.0 before cumulative fix 2016.09 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
References 3 Total
- http://www-01.ibm.com/support/docview.wss?uid=swg21990852
- securityfocus.com: 93353 vdb-entry
- www-01.ibm.com: JR56391 vendor-advisory
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- http://www-01.ibm.com/support/docview.wss?uid=swg21990852 x_transferred
- securityfocus.com: 93353 vdb-entryx_transferred
- www-01.ibm.com: JR56391 vendor-advisoryx_transferred