Key Information Vulnerability Overview CVE ID: CVE-2017-1449 CVSS 3.0 Base Score: 5.4 Vulnerability ID: 128174 Vulnerability Details Attack Vector: Network Attack Complexity: Low Privileges Required: Low User Interaction: Required Scope: Changed Confidentiality Impact: Low Integrity Impact: Low Availability Impact: None CVSS 3.0 Temporal Score: 5.2 Exploitability: Not Defined Remediation Level: Official Fix Report Confidence: Confirmed Consequences Consequences: Cross-Site Scripting Remediation Remedy: Refer to IBM Security Bulletin 2005834 for patch, upgrade, or recommended workaround information Affected Products IBM Emptoris Sourcing 9.5 IBM Emptoris Sourcing 10.0.0 IBM Emptoris Sourcing 10.0.1 IBM Emptoris Sourcing 10.0.2 References CVE-2017-1449 IBM Support IBM X-Force Exchange