CVE-2015-7414: XSS
Cross-site scripting (XSS) vulnerability in the GDS component in IBM InfoSphere Master Data Management - Collaborative Edition 9.1, 10.1, 11.0 before 11.0.0.0 IF11, 11.3 before 11.3.0.0 IF7, and 11.4 before 11.4.0.4 IF1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-7414?
CVE-2015-7414 is categorized as a medium severity Cross-site Scripting (XSS) vulnerability.
How do I fix CVE-2015-7414?
To fix CVE-2015-7414, update IBM InfoSphere Master Data Management to the latest version that addresses this vulnerability.
Which versions of IBM InfoSphere Master Data Management are affected by CVE-2015-7414?
CVE-2015-7414 affects IBM InfoSphere Master Data Management versions 9.1, 10.1, 11.0 before 11.0.0.0 IF11, 11.3 before 11.3.0.0 IF7, and 11.4 before 11.4.0.4 IF1.
Who can exploit the CVE-2015-7414 vulnerability?
CVE-2015-7414 can be exploited by remote authenticated users who gain access to the affected systems.
What type of attack is CVE-2015-7414 associated with?
CVE-2015-7414 is associated with Cross-site Scripting (XSS) attacks, allowing injection of arbitrary web scripts or HTML.