MEDIUM
IBM
CVE published 2017-02-01
CVE-2016-0265
CVE-2016-0265 is a cross-site scripting (XSS) issue in IBM Campaign. According to NVD and the cited IBM PSIRT reference, improper validation of user-supplied input can allow a remote attacker to use a specially crafted URL to execute script in a victim’s browser after the link is clicked. The impact includes theft of cookie-based authentication credentials.