Unrated severityNVD Advisory· Published Mar 24, 2006· Updated Jun 16, 2026
CVE-2006-1384
CVE-2006-1384
Description
Cross-site scripting (XSS) vulnerability in apwc_win_main.jsp in the web console in IBM Tivoli Business Systems Manager (TBSM) before 3.1.0.1 allows remote attackers to inject arbitrary web script or HTML via the skin parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:ibm:tivoli_business_systems_manager:3.1:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:ibm:tivoli_business_systems_manager:3.1:*:*:*:*:*:*:*
- (no CPE)range: <3.1.0.1
Patches
Vulnerability mechanics
References
7- secunia.com/advisories/19332nvdExploitPatchVendor Advisory
- www-1.ibm.com/support/docview.wssnvdExploitPatch
- securitytracker.com/idnvd
- www.osvdb.org/24069nvd
- www.securityfocus.com/bid/17210nvd
- www.vupen.com/english/advisories/2006/1073nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/25412nvd
News mentions
0No linked articles in our index yet.