Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 6.2 through 7.5, Maximo Asset Management Essentials 6.2 through 7.5, Tivoli Asset Management for IT 6.2 through 7.2, Tivoli Service Request Manager 7.1 and 7.2, Maximo Service Desk 6.2, Change and Configuration Management Database (CCMDB) 7.1 and 7.2, and SmartCloud Control Desk 7.5 allows remote attackers to inject arbitrary web script or HTML via vectors related to a login action.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ibm
Published: 2013-02-20T11:00:00
Updated: 2017-08-28T12:57:01
Reserved: 2012-06-07T00:00:00
Link: CVE-2012-3327
JSON object: View
NVD Information
Status : Modified
Published: 2013-02-20T12:09:21.990
Modified: 2017-08-29T01:31:53.773
Link: CVE-2012-3327
JSON object: View
Redhat Information
No data.
CWE