IBM Emptoris Contract Management is vulnerable to cross-site request scripting and forgery attacks due to flaw in handling of untrusted user input. In addition, IBM Emptoris Contract Management could allow a remote attacker to include arbitrary files. CVE(s):...
from IBM Product Security Incident Response Team http://ift.tt/1P67H0H
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.