CVE-2009-3262
IBM Tivoli Identity Manager - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in the Self Service UI (SSUI) in IBM Tivoli Identity Manager (ITIM) 5.0.0.5 allows remote authenticated users to inject arbitrary web script or HTML via the last name field in a profile.
Scores
EPSS
0.0019
EPSS Percentile
40.4%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
ibm/tivoli_identity_manager
n/a/n/a
Timeline
Published
Sep 18, 2009
Tracked Since
Feb 18, 2026