Rewterz
Rewterz Threat Alert – MassLogger Malware Being Distributed Using Phishing Emails
June 12, 2020
Rewterz
Rewterz Threat Alert – Phishing Campaign Using Zoom Invites
June 15, 2020

Rewterz Threat Advisory – CVE-2020-4380 – IBM Workload Scheduler cross-site scripting Vulnerability

Severity

Medium

Analysis Summary

IBM Workload Scheduler 9.3.0.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

Impact

Cross site scripting

Affected Vendors

IBM

Affected Products

IBM Workload Scheduler 9.3.0.4

Remediation

Refer to IBM Security Bulletin 6223030 for patch, upgrade or suggested workaround information.