ZeroHour

CVE-2017-16789

CVSS 3.0
4.8 medium
EPSS
<1%p54
Published
()
Modified
Description

Cross-site scripting (XSS) vulnerability in Integration Matters nJAMS 3 before 3.2.0 Hotfix 7, as used in TIBCO BusinessWorks Process Monitor through 3.0.1.3 and other products, allows remote authenticated administrators to inject arbitrary web script or HTML via the users management panel of the web interface.

Vendors
integrationmatterstibco
Products
njams, businessworks process monitor
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.