Cross-site scripting (XSS) vulnerability in IBM Content Navigator 2.0.2 prior to 2.0.2-ICN-FP007 and 2.0.3 prior to 2.0.3-ICN-FP003, as used in Content Manager, FileNet Content Manager, Content Foundation, Content Manager OnDemand, and other products, allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ibm content navigator 2.0.3 |
||
ibm content navigator 2.0.2 |