cve/2023/CVE-2023-28525.md
2024-05-25 21:48:12 +02:00

923 B

CVE-2023-28525

Description

IBM Engineering Requirements Management 9.7.2.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 251052.

POC

Reference

No PoCs from references.

Github