IBM Content Navigator
cpe:2.3:a:ibm:content_navigator:*:*:*:*:*:*:*
- 3.0.15
- 3.1.0
- 3.0.11
A HTML injection vulnerability has been identified in IBM Content Navigator versions 3.0.11, 3.0.15, and 3.1.0. This vulnerability allows remote attackers to inject malicious HTML code, which would be executed in the context of the victim's web browser and the hosting site.
Exploitation of this vulnerability allows for HTML injection, which can be used to execute malicious scripts in the context of the user's browser.
Users can upgrade to IBM Content Navigator versions 3.0.15 IF006, 3.1.0 IF004, or 3.0.11 IF020. Additionally, using HTTPS to encrypt data in transit can help mitigate exposure to this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.