IBM RTC Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2020-4857
Reference:
CVE-2020-4857
Title:
IBM RTC Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:
IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190460.