Description
IBM TRIRIGA Application Platform 3.3, 3.4, and 3.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 126865.
Affected products
- ibm / tririga_application_platform3.3 – 3.3
- ibm / tririga_application_platform3.3.1 – 3.3.1
- ibm / tririga_application_platform3.3.2 – 3.3.2
- ibm / tririga_application_platform3.4 – 3.4
- ibm / tririga_application_platform3.4.1 – 3.4.1
- ibm / tririga_application_platform3.4.2 – 3.4.2
- ibm / tririga_application_platform3.5 – 3.5
- ibm / tririga_application_platform3.5.1 – 3.5.1
- ibm / tririga_application_platform3.5.2 – 3.5.2