First published: Mon Sep 26 2016(Updated: )
Cross-site scripting (XSS) vulnerability in the Web UI in IBM Spectrum Control (formerly Tivoli Storage Productivity Center) 5.2.x before 5.2.11 allows remote authenticated users to inject arbitrary web script or HTML via an embedded string.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Spectrum Control | =5.2.8 | |
IBM Spectrum Control | =5.2.9 | |
IBM Spectrum Control | =5.2.10 | |
IBM Spectrum Control | =5.2.10.1 | |
IBM Tivoli Storage Productivity Center | =5.2.0 | |
IBM Tivoli Storage Productivity Center | =5.2.1 | |
IBM Tivoli Storage Productivity Center | =5.2.1.1 | |
IBM Tivoli Storage Productivity Center | =5.2.2 | |
IBM Tivoli Storage Productivity Center | =5.2.3 | |
IBM Tivoli Storage Productivity Center | =5.2.4 | |
IBM Tivoli Storage Productivity Center | =5.2.4.1 | |
IBM Tivoli Storage Productivity Center | =5.2.5 | |
IBM Tivoli Storage Productivity Center | =5.2.5.1 | |
IBM Tivoli Storage Productivity Center | =5.2.6 | |
IBM Tivoli Storage Productivity Center | =5.2.7 | |
IBM Tivoli Storage Productivity Center | =5.2.7.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.