IBM Intelligent Operations Center(IOC)是美国IBM公司的一套城市运营解决方案。该产品具有数据可视化、实时协作等功能。 IBM IOC中存在跨站脚本漏洞。攻击者可利用该漏洞向Web UI注入任意的JavaScript代码,获取可信会话中的凭据。以下产品及版本受到影响:IBM IOC 5.1.0版本,5.1.0.2版本,5.1.0.3版本,5.1.0.4版本,5.1.0.6版本,5.2版本,5.2.1版本;IBM Water Operations for Waternam
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Intelligent Operations Center for Emergency Management | 5.1.0 | - |
|
| IBM | Water Operations for Waternamics | 5.1.0 | - |
|
| IBM | Intelligent Operations Center | 5.1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-4465 | IBM MQ Appliance 缓冲区错误漏洞 | |
| CVE-2020-4319 | IBM MQ Appliance 信息泄露漏洞 | |
| CVE-2020-4375 | IBM MQ Appliance 安全漏洞 | |
| CVE-2020-4317 | IBM Intelligent Operations Center 跨站脚本漏洞 | |
| CVE-2019-4731 | IBM MQ Appliance 信息泄露漏洞 |
No comments yet