CVE-2009-1288: XSS
Multiple cross-site scripting (XSS) vulnerabilities in the Advanced Management Module (AMM) on the IBM BladeCenter, including the BladeCenter H with BPET36H 54, allow remote attackers to inject arbitrary web script or HTML via (1) the username in a login action or (2) the PATH parameter to private/filemanagement.ssi in the File manager.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1288?
The severity of CVE-2009-1288 is classified as medium due to the potential for remote attackers to exploit cross-site scripting vulnerabilities.
How do I fix CVE-2009-1288?
To fix CVE-2009-1288, ensure all users are running the latest version of the IBM Advanced Management Module and apply any security patches provided by IBM.
Which versions are affected by CVE-2009-1288?
CVE-2009-1288 affects version 1.36h of the IBM Advanced Management Module and various versions of IBM BladeCenter hardware.
What type of vulnerability is CVE-2009-1288?
CVE-2009-1288 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web script or HTML.
What impact can CVE-2009-1288 have on systems?
If exploited, CVE-2009-1288 can lead to unauthorized data access and manipulation, compromising user accounts and system integrity.