First published: Mon Jul 20 2015(Updated: )
Cross-site scripting (XSS) vulnerability in IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before FP03 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Master Data Management | =9.1 | |
IBM InfoSphere Master Data Management | =10.1 | |
IBM InfoSphere Master Data Management | =11.0 | |
IBM InfoSphere Master Data Management | =11.3 | |
IBM InfoSphere Master Data Management | =11.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-1968 is classified as a medium severity vulnerability.
To fix CVE-2015-1968, upgrade to IBM InfoSphere Master Data Management version 11.4 FP03 or later.
CVE-2015-1968 affects IBM InfoSphere Master Data Management versions 9.1, 10.1, 11.0, 11.3, and 11.4 prior to FP03.
CVE-2015-1968 is a cross-site scripting (XSS) vulnerability.
CVE-2015-1968 can be exploited by remote authenticated users.