Wednesday, February 3, 2016

IBM Security Bulletin: Multiple vulnerabilities in IBM Emptoris Contract Management (CVE-2015-5050, CVE-2015-5042, CVE-2015-7398)

IBM Emptoris Contract Management is vulnerable to cross-site request scripting and forgery attacks due to flaw in handling of untrusted user input. In addition, IBM Emptoris Contract Management could allow a remote attacker to include arbitrary files. CVE(s):...

from IBM Product Security Incident Response Team http://ift.tt/1P67H0H

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.