Description
IBM Security Access Manager Appliance 9.0.1.0, 9.0.2.0, 9.0.3.0, 9.0.4.0, and 9.0.5.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 144726.
Remediation
References
Related Vulnerabilities
WordPress Plugin Notices Ticker Cross-Site Request Forgery (5.0)
WordPress Plugin WP w3all phpBB Multiple Unspecified Vulnerabilities (1.6.3)
WordPress 4.3.x Cross-Domain Flash Injection Vulnerability (4.3 - 4.3.14)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-3542)