IBM OpenPages
cpe:2.3:a:ibm:openpages_with_watson:*:*:*:*:*:*:*
- 9.1
- 9.0
A HTML injection vulnerability has been identified in IBM OpenPages versions 9.1 and 9.0. This issue allows remotely authenticated attackers to inject malicious HTML, which is executed in the context of the victim's web browser and the hosting site.
Exploitation of this vulnerability allows for HTML injection, where injected content is executed in the context of the user's browser.
Users of IBM OpenPages 9.1.2 can download the update from the IBM Support page for version 9.1.2. For IBM OpenPages 9.0, users should apply FixPack 5 (9.0.0.5) followed by Interim Fix 5 (9.0.0.5.6). Both updates are available on the IBM Support pages for version 9.0.0.5 and 9.0.0.5.6.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.