IBM Engineering Lifecycle Optimization - Publishing
cpe:2.3:a:ibm:engineering_lifecycle_optimization_publishing:*:*:*:*:*:*:*
- 7.0.3
- 7.0.2
A cross-site scripting vulnerability has been identified in IBM Engineering Lifecycle Optimization - Publishing versions 7.0.2 and 7.0.3. The issue arises from a lack of validation for URIs, which could allow for the injection of malicious scripts.
Exploitation of this vulnerability could lead to cross-site scripting, allowing attackers to inject malicious scripts that could be executed in the context of the user's browser.
Users can upgrade to IBM Engineering Lifecycle Optimization - Publishing version 7.0.3 (iFix016) or version 7.0.2 (iFix035).
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.