CVE-2020-4768
11.02.2021, 17:15
IBM Case Manager 5.2 and 5.3 and IBM Business Automation Workflow 18.0, 19.0, and 20.0 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 188907.
Vendor | Product | Version |
---|---|---|
ibm | business_automation_workflow | 18.0.0.0 ≤ 𝑥 ≤ 20.0.0.2 |
ibm | case_manager | 5.2.0 ≤ 𝑥 ≤ 5.3.3 |
𝑥
= Vulnerable software versions