Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-15173 | IBM Security Guardium 11.5 is vulnerable to stored cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7233600 |
|
Thu, 15 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 15 May 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Security Guardium 11.5 is vulnerable to stored cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. | |
| Title | IBM Security Guardium cross-site scripting | |
| First Time appeared |
Ibm
Ibm security Guardium |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:ibm:security_guardium:11.4:*:*:*:*:*:*:* cpe:2.3:a:ibm:security_guardium:11.5:*:*:*:*:*:*:* cpe:2.3:a:ibm:security_guardium:12.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm security Guardium |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-08-26T15:06:56.970Z
Reserved: 2025-04-08T02:10:47.793Z
Link: CVE-2025-3440
Updated: 2025-05-15T16:08:08.434Z
Status : Analyzed
Published: 2025-05-15T16:15:33.810
Modified: 2025-06-20T17:14:07.857
Link: CVE-2025-3440
No data.
OpenCVE Enrichment
No data.
EUVD