CVE-2024-28775

All FrameworksWebSphereCWE-79CVE-2024-28775

CVE-2024-28775

State: PUBLISHED · Published: 2024-05-01 · Updated: 2024-08-02 · Assigner: ibm
Description
IBM WebSphere Automation 1.7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 285648.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2024/28xxx/CVE-2024-28775.json