TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2015-1966

N/A

Beschreibung

Multiple cross-site scripting (XSS) vulnerabilities in IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before FP17, 6.2.1 before FP9, and 6.2.2 before FP15, as used in Security Access Manager for Mobile and other products, allow remote attackers to inject arbitrary web script or HTML via a crafted URL, related to the (1) ERROR_DESCRIPTION and (2) TOKEN:RelayState macros.

CVE Details

CVSS v3.1 BewertungN/A
Veroffentlicht7/4/2015
Zuletzt geandert4/12/2025
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

ibm:tivoli_federated_identity_manager

Schwachen (CWE)

CWE-79

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.