VYPR
Medium severity5.4NVD Advisory· Published May 15, 2016· Updated May 6, 2026

CVE-2016-0390

CVE-2016-0390

Description

Cross-site scripting (XSS) vulnerability in IBM Algorithmics Algo One Algo Risk Application (ARA) 4.9.1 through 5.1.0 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.

Affected products

3
  • IBM/Algo One3 versions
    cpe:2.3:a:ibm:algo_one:4.9.1:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:ibm:algo_one:4.9.1:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:algo_one:5.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:algo_one:5.1.0:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.