APAR status
Closed as program error.
Error description
36107 - Correct XSS vulnerabilites in the self-service UI interface. A possible security condition may exist when someone passes a specific URL to an ITIM Administrator via cut and paste.
Local fix
Problem summary
Users affected: ALL ITIM USERS.
Problem conclusion
This fix for this APAR is contained in the following maintenance packages: | Interim Fix | 5.0.0.6-TIV-TIM-IF0028
Temporary fix
Comments
APAR Information
APAR number
IZ54310
Reported component name
IBM TIV IDENT M
Reported component ID
5724C3404
Reported release
500
Status
CLOSED PER
PE
NoPE
HIPER
NoHIPER
Special Attention
NoSpecatt
Submitted date
2009-06-30
Closed date
2009-06-30
Last modified date
2009-07-17
APAR is sysrouted FROM one or more of the following:
APAR is sysrouted TO one or more of the following:
Modules/Macros
SERVER
Fix information
Fixed component name
IBM TIV IDENT M
Fixed component ID
5724C3404
Applicable component levels
R500 PSY
UP
[{"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSC985W","label":"Server"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"500","Edition":"","Line of Business":{"code":"","label":""}}]
Document Information
Modified date:
17 July 2009