IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 285645.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2024-07-25T17:18:40.388Z
Updated: 2024-08-02T00:56:58.371Z
Reserved: 2024-03-10T12:23:11.489Z
Link: CVE-2024-28772
Vulnrichment
Updated: 2024-07-26T14:01:14.157Z
NVD
Status : Analyzed
Published: 2024-07-25T18:15:03.470
Modified: 2024-08-02T19:52:32.657
Link: CVE-2024-28772
Redhat
No data.