Cross-site scripting (XSS) vulnerability in IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x before 6.6.1 allows remote authenticated users to inject arbitrary web script or HTML by uploading a file.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: ibm

Published: 2014-02-25T21:00:00

Updated: 2017-08-28T12:57:01

Reserved: 2014-01-06T00:00:00


Link: CVE-2014-0843

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2014-02-26T01:29:36.780

Modified: 2017-08-29T01:34:16.763


Link: CVE-2014-0843

JSON object: View

cve-icon Redhat Information

No data.

CWE