Multiple cross-site scripting (XSS) vulnerabilities in IBM TRIRIGA Application Platform 2.x and 3.x before 3.3, and 8, allow remote attackers to inject content, and conduct phishing attacks, via vectors involving (1) the html/en/default/ directory, (2) birt/frameset, (3) WebProcess.srv, (4) sqa/html/en/default/reportTemplate/reportTemplateOrderCols.jsp, or (5) a/html/en/default/om2/omObjectFinder.jsp.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: ibm

Published: 2013-04-23T10:00:00

Updated: 2017-08-28T12:57:01

Reserved: 2012-11-21T00:00:00


Link: CVE-2012-5949

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2013-04-23T11:47:35.820

Modified: 2017-08-29T01:32:52.760


Link: CVE-2012-5949

JSON object: View

cve-icon Redhat Information

No data.

CWE