CVE-2022-35721
IBM Jazz for Service Management 1.1.3 is vulnerable to stored cross-site scripting. This vulnerability allows users to e
IBM Jazz for Service Management 1.1.3 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 231380.
MEDIUM · CVSS 5.4
EPSS 0.0053
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
Sigma rules7
YARA rules0