漏洞标题
N/A
漏洞描述信息
"在InfoSphere数据架构师(IDA)中,跨站脚本攻击(XSS)漏洞,如IBM Rational Software Architect 8.5 through 9.5、Rational Software Architect for WebSphere Software (RSA4WS) 8.5 through 9.5和Rational Software Architect RealTime (RSART) 8.5 through 9.5分发,允许远程攻击者通过构造的URL注入任意的Web脚本或HTML。
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
漏洞类别
N/A
漏洞标题
N/A
漏洞描述信息
Cross-site scripting (XSS) vulnerability in InfoSphere Data Architect (IDA), as distributed in IBM Rational Software Architect 8.5 through 9.5, Rational Software Architect for WebSphere Software (RSA4WS) 8.5 through 9.5, and Rational Software Architect RealTime (RSART) 8.5 through 9.5, allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
CVSS信息
N/A
漏洞类别
N/A
漏洞标题
IBM InfoSphere Data Architect 跨站脚本漏洞
漏洞描述信息
IBM Rational Software Architect等都是美国IBM公司的产品。IBM Rational Software Architect是一套软件开发平台。Rational Software Architect for WebSphere Software(RSA4WS)是一套用于设计、开发和优化IBM WebSphere应用程序的开发平台。InfoSphere Data Architect(IDA)是一套协作式数据设计解决方案。 多款IBM产品中使用的IDA中存在跨站脚本漏洞。远程攻击者
CVSS信息
N/A
漏洞类别
跨站脚本