Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-37994 | IBM Security Verify Governance 10.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7230443 |
|
Wed, 09 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 09 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Security Verify Governance 10.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. | |
| Title | IBM Security Verify Governance cross-site scripting | |
| First Time appeared |
Ibm
Ibm security Verify Governance |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:ibm:security_verify_governance:10.0.2:*:*:*:*:*:*:* | |
| Vendors & Products |
Ibm
Ibm security Verify Governance |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-08-16T23:42:11.334Z
Reserved: 2023-05-23T00:31:59.437Z
Link: CVE-2023-33844
Updated: 2025-04-09T14:27:40.480Z
Status : Analyzed
Published: 2025-04-09T14:15:27.527
Modified: 2025-07-16T15:38:22.500
Link: CVE-2023-33844
No data.
OpenCVE Enrichment
No data.
EUVD