CVE

Id
84728  
CVE No.
CVE-2015-7451  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.5 before 7.5.0.9 IF2 and 7.6 before 7.6.0.3 FP3 and Maximo Asset Management 7.5 before 7.5.0.9 IF2, 7.5.1, and 7.6 before 7.6.0.3 FP3 for SmartCloud Control Desk allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.  
Phase
Assigned (20150929)  
Votes
None (candidate not yet proposed)  
Comments