CVE-2014-0942

Cross-site scripting (XSS) vulnerability in webtop/eventviewer/eventViewer.jsp in the Web GUI in IBM Netcool/OMNIbus 7.4.0 before FP2 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2014-0941.

Date published : 2014-05-01

http://www-01.ibm.com/support/docview.wss?uid=swg21671686

https://exchange.xforce.ibmcloud.com/vulnerabilities/92401