CVE-2024-49785 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

IBM watsonx.ai 1.1 through 2.0.3 and IBM watsonx.ai on Cloud Pak for Data 4.8 through 5.0.3 is vulnerable to cross-site scripting. This vulnerability allows an…
Medium CVSS: 5.4

CVE-2024-49785

IBM watsonx.ai 1.1 through 2.0.3 and IBM watsonx.ai on Cloud Pak for Data 4.8 through 5.0.3 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Vendor
Ibm
Product
Watsonx.ai
CWE
CWE-79
Yayın Tarihi
2025-01-12 02:15:18
Güncelleme
2025-08-19 12:38:57
Source Identifier
psirt@us.ibm.com
KEV Date Added
-

Kategoriler

Referanslar