CVE-2014-6150: XSS
Cross-site scripting (XSS) vulnerability in IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.2.1.0 through 7.2.1.6 and 7.2.2.0 through 7.2.2.2 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-6150?
The severity of CVE-2014-6150 is classified as medium due to potential exploitation by authenticated users.
How do I fix CVE-2014-6150?
To fix CVE-2014-6150, update your IBM Tivoli Application Dependency Discovery Manager to a patched version beyond 7.2.2.2.
Who is affected by CVE-2014-6150?
CVE-2014-6150 affects users of IBM Tivoli Application Dependency Discovery Manager versions 7.2.1.0 through 7.2.1.6 and 7.2.2.0 through 7.2.2.2.
What types of vulnerabilities does CVE-2014-6150 represent?
CVE-2014-6150 represents a cross-site scripting (XSS) vulnerability that allows script injection.
Can CVE-2014-6150 be exploited remotely?
Yes, CVE-2014-6150 can be exploited remotely by authenticated users who craft specific URLs.