Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before FP17, 6.2.1 before FP9, and 6.2.2 before FP15, as used in Security Access Manager for Mobile and other products, allow remote attackers to inject arbitrary web script or HTML via a crafted URL, related to the (1) ERROR_DESCRIPTION and (2) TOKEN:RelayState macros.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Tivoli Federated Identity Manager和Security Access Manager for Mobile 跨站脚本漏洞
Vulnerability Description
IBM Tivoli Federated Identity Manager(TFIM)和Security Access Manager for Mobile都是美国IBM公司的产品。前者是一款跨企业的联邦身份管理产品。后者是一套通过一个模块式软件包提供移动访问安全防护的解决方案。 IBM TFIM和IBM Security Access Manager for Mobile中存在跨站脚本漏洞。远程攻击者可借助特制的URL利用该漏洞注入任意Web脚本或HTML。以下版本受到影响:IBM Tivoli Fed
CVSS Information
N/A
Vulnerability Type
N/A