CVE-2021-29771: XSS
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Other sources
IBM InfoSphere Information Server is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2021-29771?
CVE-2021-29771 is classified as a high severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2021-29771?
To fix CVE-2021-29771, apply the latest security patch provided by IBM for InfoSphere Information Server version 11.7.
Who is affected by CVE-2021-29771?
CVE-2021-29771 affects users of IBM InfoSphere Information Server version 11.7.
What kind of attacks can CVE-2021-29771 enable?
CVE-2021-29771 can enable cross-site scripting attacks that may lead to credential disclosure.
Is CVE-2021-29771 remotely exploitable?
Yes, CVE-2021-29771 can be remotely exploited by users accessing the vulnerable Web UI.