CVE-2015-1894

Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Optim Workload Replay 2.x before 2.1.0.3 allows remote attackers to hijack the authentication of arbitrary users for requests that insert XSS sequences.
References
Link Resource
http://www-01.ibm.com/support/docview.wss?uid=swg21700768 Patch Vendor Advisory
http://www.securityfocus.com/bid/74441 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:optim_workload_replay:2.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:optim_workload_replay:2.1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:optim_workload_replay:2.1.0.2:*:*:*:*:*:*:*

History

No history.

Information

Published : 2015-05-25 00:59

Updated : 2024-02-04 18:53


NVD link : CVE-2015-1894

Mitre link : CVE-2015-1894

CVE.ORG link : CVE-2015-1894


JSON object : View

Products Affected

ibm

  • optim_workload_replay
CWE
CWE-352

Cross-Site Request Forgery (CSRF)