An unspecified error in the Prototype JavaScript framework (prototype.js), as used in multiple products, could allow a remote attacker to conduct cross-site Ajax requests using unknown attack vectors. Note: This vulnerability affects the ajax based manager interface, ajamdemo.html, in certain versions of Asterisk.
CVE(s): CVE-2008-7220
Affected product(s) and affected version(s):
IBM Sterling B2B Integrator 5.2
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2sURUid
X-Force Database: http://ift.tt/2tSj2vs
The post IBM Security Bulletin: JavaScript vulnerability affects IBM Sterling B2B Integrator (CVE-2008-7220) appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team http://ift.tt/2sUJ8Rh
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.