Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.1, Maximo Asset Management Essentials 7.1, Tivoli Asset Management for IT 7.1 and 7.2, Tivoli Service Request Manager 7.1 and 7.2, and Change and Configuration Management Database (CCMDB) 7.1 and 7.2 allows remote attackers to inject arbitrary web script or HTML via vectors related to a hidden frame footer.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ibm
Published: 2013-02-20T11:00:00
Updated: 2017-08-28T12:57:01
Reserved: 2012-06-07T00:00:00
Link: CVE-2012-3328
JSON object: View
NVD Information
Status : Modified
Published: 2013-02-20T12:09:22.037
Modified: 2017-08-29T01:31:53.837
Link: CVE-2012-3328
JSON object: View
Redhat Information
No data.
CWE