Unrated severityNVD Advisory· Published Dec 17, 2007· Updated Apr 23, 2026
CVE-2007-6407
CVE-2007-6407
Description
Multiple cross-site scripting (XSS) vulnerabilities in IBM Tivoli Provisioning Manager Express allow remote attackers to inject arbitrary web script or HTML via the (1) "assess modification," (2) user-id, and other unspecified fields to the /tpmx URI; or (3) involving unspecified vectors related to "error processing."
Affected products
1- cpe:2.3:a:ibm:tivoli_provisioning_manager_express:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4News mentions
0No linked articles in our index yet.