First published: Thu Jan 31 2013(Updated: )
Cross-site scripting (XSS) vulnerability in InfoSphere Metadata Workbench (MWB) 8.1 through 8.7 in IBM InfoSphere Information Server 8.1, 8.5 before FP3, and 8.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Information Server | =8.1 | |
IBM InfoSphere Information Server | =8.5 | |
IBM InfoSphere Information Server | =8.5.0.1 | |
IBM InfoSphere Information Server | =8.5.0.2 | |
IBM InfoSphere Information Server | =8.7 | |
IBM InfoSphere Metadata Workbench | =8.1 | |
IBM InfoSphere Metadata Workbench | =8.1.1 | |
IBM InfoSphere Metadata Workbench | =8.1.2 | |
IBM InfoSphere Metadata Workbench | =8.5 | |
IBM InfoSphere Metadata Workbench | =8.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0203 is considered a medium severity cross-site scripting (XSS) vulnerability.
To fix CVE-2012-0203, upgrade the IBM InfoSphere Metadata Workbench to a version that is not affected by this vulnerability.
CVE-2012-0203 affects IBM InfoSphere Information Server versions 8.1 and 8.5 before FP3.
CVE-2012-0203 impacts the IBM InfoSphere Metadata Workbench versions 8.1, 8.1.1, 8.1.2, and 8.5.
There is no specific patch; users must upgrade to a non-vulnerable version of the affected software to mitigate CVE-2012-0203.