IBM Security Bulletin: IBM TRIRIGA Application Platform Reflected Cross-Site Scripting (XSS) (CVE-2016-6000)

The IBM TRIRIGA Application is vulnerable to Reflected Cross-Site Scripting attacks.

CVE(s): CVE-2016-6000

Affected product(s) and affected version(s):

The following IBM TRIRIGA Platform versions are affected.

· IBM TRIRIGA Application Platform 3.5.1.1 and earlier.
· IBM TRIRIGA Application Platform 3.4.2.4 and earlier.
· IBM TRIRIGA Application Platform 3.3.2.5 and earlier.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2eqPH4J
X-Force Database: http://ift.tt/2e2tmN5



from IBM Product Security Incident Response Team http://ift.tt/2eqQAdN