Multiple cross-site scripting (XSS) vulnerabilities in IBM TRIRIGA Application Platform 2.x and 3.x before 3.3.1.1, and 8, allow remote authenticated users to inject arbitrary web script or HTML via (1) unspecified input to WebProcess.srv, (2) unspecified input to html/en/default/actionHandler/queryHandler.jsp, or (3) unspecified input in a portalSectionId action to html/en/default/reportTemplate/hGridTopQuery.jsp.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2013-08-29T10:00:00

Updated: 2024-08-06T16:30:49.464Z

Reserved: 2013-06-07T00:00:00

Link: CVE-2013-4003

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2013-08-29T12:07:54.090

Modified: 2017-08-29T01:33:31.980

Link: CVE-2013-4003

cve-icon Redhat

No data.