Medium severity5.4NVD Advisory· Published Oct 24, 2017· Updated Jun 17, 2026
CVE-2017-1209
CVE-2017-1209
Description
IBM Daeja ViewONE Professional, Standard & Virtual 4.1.5.1 and 5.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 123849.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
12cpe:2.3:a:ibm:daeja_viewone:4.1.5.1:*:*:*:professional:*:*:*+ 10 more
- cpe:2.3:a:ibm:daeja_viewone:4.1.5.1:*:*:*:professional:*:*:*
- cpe:2.3:a:ibm:daeja_viewone:4.1.5.1:*:*:*:standard:*:*:*
- cpe:2.3:a:ibm:daeja_viewone:4.1.5.1:*:*:*:virtual:*:*:*
- cpe:2.3:a:ibm:daeja_viewone:4.1.5:*:*:*:professional:*:*:*
- cpe:2.3:a:ibm:daeja_viewone:4.1.5:*:*:*:standard:*:*:*
- cpe:2.3:a:ibm:daeja_viewone:4.1.5:*:*:*:virtual:*:*:*
- cpe:2.3:a:ibm:daeja_viewone:5.0.0:*:*:*:virtual:*:*:*
- cpe:2.3:a:ibm:daeja_viewone:5.0.2:*:*:*:professional:*:*:*
- cpe:2.3:a:ibm:daeja_viewone:5.0.2:*:*:*:standard:*:*:*
- cpe:2.3:a:ibm:daeja_viewone:5.0.2:*:*:*:virtual:*:*:*
- (no CPE)range: 4.1.5.1
- Range: 4.1.5.1 and 5.0.2
Patches
Vulnerability mechanics
References
2- www.ibm.com/support/docview.wssnvdIssue TrackingVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/123849nvdIssue TrackingVDB EntryVendor Advisory
News mentions
0No linked articles in our index yet.