First published: Fri Apr 07 2023(Updated: )
IBM TRIRIGA Application Platform 4.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 241036.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM TRIRIGA Application Platform | >=4.0<4.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-43914 is considered a moderate severity vulnerability due to its cross-site scripting nature.
To fix CVE-2022-43914, you should update IBM TRIRIGA Application Platform to the latest version that addresses this vulnerability.
CVE-2022-43914 can facilitate cross-site scripting attacks that allow attackers to execute arbitrary JavaScript code in the user's browser.
CVE-2022-43914 affects users of IBM TRIRIGA Application Platform versions prior to 4.0.4.
The potential impacts of CVE-2022-43914 include unauthorized access to user credentials within a trusted session.