![](/assets/img/cve_300x82_sin_bg.png)
CVE-2014-8897
https://notcve.org/view.php?id=CVE-2014-8897
22 Dec 2014 — Cross-site scripting (XSS) vulnerability in the Collaboration Server in IBM InfoSphere Master Data Management Server for Product Information Management 9.x through 9.1 and InfoSphere Master Data Management - Collaborative Edition 10.x through 10.1, 11.0 before FP7, and 11.3 and 11.4 before 11.4 FP1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2014-8898 and CVE-2014-8899. Vulnerabilidad de XSS en el Collaboration Server en IBM ... • http://www-01.ibm.com/support/docview.wss?uid=swg21692176 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2014-8896
https://notcve.org/view.php?id=CVE-2014-8896
22 Dec 2014 — The Collaboration Server in IBM InfoSphere Master Data Management Server for Product Information Management 9.x through 9.1 and InfoSphere Master Data Management - Collaborative Edition 10.x through 10.1, 11.0 before FP7, and 11.3 and 11.4 before 11.4 FP1 allows remote authenticated users to modify the administrator's credentials and consequently gain privileges via unspecified vectors. El servidor Collaboration Server en IBM InfoSphere Master Data Management Server for Product Information Management 9.x ha... • http://www-01.ibm.com/support/docview.wss?uid=swg21692176 • CWE-287: Improper Authentication •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2014-8898
https://notcve.org/view.php?id=CVE-2014-8898
22 Dec 2014 — Cross-site scripting (XSS) vulnerability in the Collaboration Server in IBM InfoSphere Master Data Management Server for Product Information Management 9.x through 9.1 and InfoSphere Master Data Management - Collaborative Edition 10.x through 10.1, 11.0 before FP7, and 11.3 and 11.4 before 11.4 FP1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2014-8897 and CVE-2014-8899. Vulnerabilidad de XSS en el Collaboration Server en IBM ... • http://www-01.ibm.com/support/docview.wss?uid=swg21692176 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2014-8899
https://notcve.org/view.php?id=CVE-2014-8899
22 Dec 2014 — Cross-site scripting (XSS) vulnerability in the Collaboration Server in IBM InfoSphere Master Data Management Server for Product Information Management 9.x through 9.1 and InfoSphere Master Data Management - Collaborative Edition 10.x through 10.1, 11.0 before FP7, and 11.3 and 11.4 before 11.4 FP1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2014-8897 and CVE-2014-8898. Vulnerabilidad de XSS en el Collaboration Server en IBM ... • http://www-01.ibm.com/support/docview.wss?uid=swg21692176 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •