IBM Content Navigator 3.0.11, 3.0.13, and 3.0.14 with IBM Daeja ViewOne Virtual is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 264019.
Metrics
Affected Vendors & Products
References
History
Thu, 19 Sep 2024 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2023-10-04T13:38:40.057Z
Updated: 2024-09-19T14:45:55.521Z
Reserved: 2023-08-18T15:48:06.501Z
Link: CVE-2023-40684
Vulnrichment
Updated: 2024-08-02T18:38:51.161Z
NVD
Status : Modified
Published: 2023-10-04T14:15:10.957
Modified: 2024-11-21T08:19:58.097
Link: CVE-2023-40684
Redhat
No data.