CVE-2015-1988
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Cross-site scripting (XSS) vulnerability in IBM Tivoli Storage Manger for Virtual Environments: Data Protection for VMware 6.3 before 6.3.2.5, 6.4 before 6.4.3.1, and 7.1 before 7.1.3 and Tivoli Storage FlashCopy Manager for VMware 3.1 before 3.1.1.3, 3.2 before 3.2.0.6, and 4.1 before 4.1.3.0 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
Vulnerabilidad de XSS en IBM Tivoli Storage Manger para Virtual Environments: Data Protection for VMware 6.3 en versiones anteriores a 6.3.2.5, 6.4 en versiones anteriores a 6.4.3.1 y 7.1 en versiones anteriores a 7.1.3 y Tivoli Storage FlashCopy Manager for VMware 3.1 en versiones anteriores a 3.1.1.3, 3.2 en versiones anteriores a 3.2.0.6 y 4.1 en versiones anteriores a 4.1.3.0 permite a usuarios remotos autenticados inyectar secuencias de comandos web o HTML arbitrarios a través de una URL manipulada.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-02-19 CVE Reserved
- 2015-10-04 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg21967532 | 2019-06-13 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ibm Search vendor "Ibm" | Tivoli Storage Flashcopy Manager Search vendor "Ibm" for product "Tivoli Storage Flashcopy Manager" | >= 3.1.0.0 < 3.1.1.3 Search vendor "Ibm" for product "Tivoli Storage Flashcopy Manager" and version " >= 3.1.0.0 < 3.1.1.3" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Storage Flashcopy Manager Search vendor "Ibm" for product "Tivoli Storage Flashcopy Manager" | >= 3.2.0.0 < 3.2.0.6 Search vendor "Ibm" for product "Tivoli Storage Flashcopy Manager" and version " >= 3.2.0.0 < 3.2.0.6" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Storage Flashcopy Manager Search vendor "Ibm" for product "Tivoli Storage Flashcopy Manager" | >= 4.1.0.0 <= 4.1.3.0 Search vendor "Ibm" for product "Tivoli Storage Flashcopy Manager" and version " >= 4.1.0.0 <= 4.1.3.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Storage Manager For Virtual Environments Search vendor "Ibm" for product "Tivoli Storage Manager For Virtual Environments" | >= 6.3.0.0 < 6.3.2.5 Search vendor "Ibm" for product "Tivoli Storage Manager For Virtual Environments" and version " >= 6.3.0.0 < 6.3.2.5" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Storage Manager For Virtual Environments Search vendor "Ibm" for product "Tivoli Storage Manager For Virtual Environments" | >= 6.4.0.0 < 6.4.3.1 Search vendor "Ibm" for product "Tivoli Storage Manager For Virtual Environments" and version " >= 6.4.0.0 < 6.4.3.1" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Tivoli Storage Manager For Virtual Environments Search vendor "Ibm" for product "Tivoli Storage Manager For Virtual Environments" | >= 7.1.0.0 < 7.1.3.0 Search vendor "Ibm" for product "Tivoli Storage Manager For Virtual Environments" and version " >= 7.1.0.0 < 7.1.3.0" | - |
Affected
|