Описание
IBM Security ReaQta 3.12 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 3.12 (включая) до 3.12.12 (исключая)
Одновременно
cpe:2.3:a:ibm:security_qradar_edr:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
EPSS
Процентиль: 20%
0.00065
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-942
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 5.3
github
около 1 года назад
IBM Security ReaQta 3.12 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
EPSS
Процентиль: 20%
0.00065
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-942
NVD-CWE-noinfo