Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-05123
HistoryJul 13, 2021 - 12:00 a.m.

IBM Tivoli Netcool/OMNIbus Web GUI Storage Based Cross-Site Scripting Vulnerability

2021-07-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
8

0.001 Low

EPSS

Percentile

19.8%

IBM Tivoli Netcool/OMNIbus is a service-level management (SLM) system that provides real-time, centralized monitoring of complex networks and IT domains. web GUI is a web-based application version of the system that displays event data from multiple data sources in a variety of graphical formats in supported web browsers and mobile devices. the IBM Tivoli Netcool/OMNIbus Web GUI is vulnerable to a storage cross-site scripting vulnerability. Tivoli Netcool/OMNIbus Web GUI is vulnerable to a stored cross-site scripting vulnerability. An attacker could exploit the vulnerability to embed arbitrary JavaScript code in the Web UI, which could alter the intended functionality, which could lead to credential disclosure in a trusted session.

0.001 Low

EPSS

Percentile

19.8%

Related for CNVD-2022-05123