CyberRota Analysis
AI analysis pending.
CVE
CVE-2020-4895
Severity
MEDIUM
CVSS
5.4
EPSS
0.55%
Java
Original NVD Description
IBM Emptoris Strategic Supply Management 10.1.0, 10.1.1, and 10.1.3 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190986.