IBM Security Bulletin: Cross-site scripting vulnerability affects IBM BigFix Compliance Analytics (CVE-2017-1178)

IBM BigFix Compliance Analytics is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code. IBM BigFix Compliance Analytics has remediated this vulnerability.

CVE(s): CVE-2017-1178

Affected product(s) and affected version(s):

IBM BigFix Security Compliance Analytics 1.9.70

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2rZXaBA
X-Force Database: http://ift.tt/2szvjFc

The post IBM Security Bulletin: Cross-site scripting vulnerability affects IBM BigFix Compliance Analytics (CVE-2017-1178) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2rZXb8C