Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-83663
HistoryOct 25, 2023 - 12:00 a.m.

IBM Security Verify Governance Cross-Site Scripting Vulnerability

2023-10-2500:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
ibm
security
verify
governance
cross-site scripting
vulnerability
identity and access management
software system
user identities
permissions
access
arbitrary javascript code
web ui
disclosure of credentials
trusted session
cnvd

AI Score

6

Confidence

High

EPSS

0

Percentile

13.1%

IBM Security Verify Governance is an identity and access management solution provided by IBM. It is a software system for managing and monitoring user identities, permissions and access. A cross-site scripting vulnerability exists in IBM Security Verify Governance, which can be exploited by an attacker to embed arbitrary JavaScript code in the Web UI to change the intended functionality, potentially resulting in the disclosure of credentials in a trusted session.

AI Score

6

Confidence

High

EPSS

0

Percentile

13.1%

Related for CNVD-2023-83663