Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
IBM B2B Advanced Communication cross-site scripting
Vulnerability Description
IBM B2B Advanced Communications 1.0.0.0 and IBM Multi-Enterprise Integration Gateway 1.0.0.1 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 244076.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Vulnerability Type
在Web页面生成时对输入的转义处理不恰当(跨站脚本)
Vulnerability Title
IBM B2B Advanced Communications 跨站脚本漏洞
Vulnerability Description
IBM B2B Advanced Communications是美国国际商业机器(IBM)公司的一款综合性企业对企业(B2B)集成解决方案。它是 IBM Sterling B2B Integration 产品系列的一部分,旨在简化和优化企业与合作伙伴之间的B2B交互。 IBM B2B Advanced Communications存在安全漏洞,该漏洞源于容易受到跨站点脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A