Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-99679
HistoryJul 15, 2021 - 12:00 a.m.

IBM Cloud Pak for Applications Cross-Site Scripting Vulnerability (CNVD-2021-99679)

2021-07-1500:00:00
China National Vulnerability Database
www.cnvd.org.cn
5
ibm cloud pak
cross-site scripting
vulnerability
web ui
credential disclosure

EPSS

0.001

Percentile

19.6%

IBM Cloud Pak for Applications is an application from IBM USA, Inc. providing cloud-native development solutions that deliver value quickly.A cross-site scripting vulnerability exists in IBM Cloud Pak for Applications v4.3 that allows a user to embed arbitrary JavaScript code in the Web UI to alter the intended functionality, potentially leading to credential disclosure in trusted sessions. No detailed vulnerability details are currently available.

EPSS

0.001

Percentile

19.6%

Related for CNVD-2021-99679