First published: Tue Mar 20 2018(Updated: )
Cross-site scripting (XSS) vulnerability in IBM Connections 3.0.1.1 and earlier, 4.0, 4.5, and 5.0 before CR4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. IBM X-Force ID: 108354.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Connections | <=3.0.1.1 | |
IBM Connections | =4.0.0.0 | |
IBM Connections | =4.5.0.0 | |
IBM Connections | =5.0.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2015-7458 is medium with a severity value of 5.4.
CVE-2015-7458 affects IBM Connections versions 3.0.1.1 and earlier, 4.0, 4.5, and 5.0 before CR4.
CVE-2015-7458 is a Cross-site Scripting (XSS) vulnerability.
Remote attackers can exploit CVE-2015-7458 by injecting arbitrary web script or HTML via unspecified vectors.
To fix CVE-2015-7458 in IBM Connections, apply the necessary updates or patches provided by IBM.