Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-46466 | IBM Sterling Control Center 6.2.1, 6.3.1, and 6.4.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7230560 |
|
Fri, 18 Jul 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm aix
Ibm linux On Ibm Z Ibm sterling Control Center Linux Linux linux Kernel Microsoft Microsoft windows |
|
| CPEs | cpe:2.3:a:ibm:sterling_control_center:6.2.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:sterling_control_center:6.3.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:sterling_control_center:6.4.0:*:*:*:*:*:*:* cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:* cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm aix
Ibm linux On Ibm Z Ibm sterling Control Center Linux Linux linux Kernel Microsoft Microsoft windows |
Thu, 10 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 10 Apr 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Sterling Control Center 6.2.1, 6.3.1, and 6.4.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. | |
| Title | IBM Sterling Control Center cross-site scripting | |
| First Time appeared |
Ibm
Ibm control Center |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:ibm:control_center:6.2.1.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:control_center:6.3.1.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:control_center:6.4.0.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm control Center |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-08-17T00:09:35.887Z
Reserved: 2023-09-06T19:32:50.696Z
Link: CVE-2023-42007
Updated: 2025-04-10T14:14:51.231Z
Status : Analyzed
Published: 2025-04-10T14:15:25.250
Modified: 2025-07-18T14:21:30.587
Link: CVE-2023-42007
No data.
OpenCVE Enrichment
No data.
EUVD