2

Security Bulletin: IBM Control Desk is vulnerable to Cross-Site Scripting Vulnerability (CVE-2021-20559)

<p> IBM Control Desk is vulnerable to Cross-Site Scripting Vulnerability </p>
<p> CVE(s): [u][/u]</p>
<p>Affected product(s) and affected version(s):</p>
<p>This vulnerability affects the following versions of the IBM Control Desk (ICD). Older versions of IBM Control Desk (ICD) may be impacted. The recommended action is to update to the latest version.</p>
<p><strong>IBM Control Desk core product versions affected:</strong></p>
<table style="height: 24px; width: 308px;" border="1">
<tbody>
<tr style="height: 12px;">
<td style="text-align: center; height: 12px; width: 156px;">Affected Product(s)</td>
<td style="text-align: center; height: 12px; width: 136.667px;">Version(s)</td>
</tr>
<tr style="height: 12px;">
<td style="text-align: center; height: 12px; width: 156px;">IBM Control Desk</td>
<td style="text-align: center; height: 12px; width: 136.667px;">IBM Control Desk <strong>7.6.1.2</strong> and <strong>7.6.1.3</strong></td>
</tr>
</tbody>
</table>
<p>* To determine the core product version, log in and view System Information. The core product version is the &#34;Tivoli&#39;s process automation engine&#34; version. Please consult the  for a list of supported product combinations.</p>
</p>
<p> Refer to the following reference URLs for remediation and additional vulnerability details: &nbsp;
Source Bulletin:
X-Force Database: </p>
<p>The post appeared first on .</p>
[fixed][/fixed]
[/not-available]