5.4
CVSSv3

CVE-2017-1345

CVSSv4: NA | CVSSv3: 5.4 | CVSSv2: 3.5 | VMScore: 640 | EPSS: 0.00049 | KEV: Not Included
Published: 03/10/2017 Updated: 21/11/2024

Vulnerability Summary

IBM Insights Foundation for Energy 2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 126460.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm insights foundation for energy 2.0