{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-05-05T13:27:42.395","vulnerabilities":[{"cve":{"id":"CVE-2016-0265","sourceIdentifier":"psirt@us.ibm.com","published":"2017-02-01T20:59:00.130","lastModified":"2025-04-20T01:37:25.860","vulnStatus":"Deferred","cveTags":[],"descriptions":[{"lang":"en","value":"IBM Campaign is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability using a specially-crafted URL to execute script in a victim's Web browser within the security context of the hosting Web site, once the URL is clicked. An attacker could use this vulnerability to steal the victim's cookie-based authentication credentials."},{"lang":"es","value":"IBM Campaign es vulnerable a las secuencias de comandos en sitios cruzados, causadas por una validación incorrecta de la entrada suministrada por el usuario. Un atacante remoto podría explotar esta vulnerabilidad utilizando una URL especialmente manipulada para ejecutar la secuencia de comandos en el navegador Web de una víctima dentro del contexto de seguridad del sitio Web de alojamiento, una vez que se hace clic en la URL. Un atacante podría usar esta vulnerabilidad para robar las credenciales de autenticación basadas en cookies de la víctima."}],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N","baseScore":5.4,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":2.3,"impactScore":2.7}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:S/C:N/I:P/A:N","baseScore":3.5,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"SINGLE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":6.8,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-79"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:campaign:8.6:*:*:*:*:*:*:*","matchCriteriaId":"8CCF7E4A-B159-45CA-A3F6-C6D26B2AF08C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:campaign:9.1:*:*:*:*:*:*:*","matchCriteriaId":"8511BB84-F922-496D-B508-C4116599FCC2"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:campaign:9.1.1:*:*:*:*:*:*:*","matchCriteriaId":"9C3D9E35-1594-4D84-AF18-170D20960D99"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:campaign:9.1.2:*:*:*:*:*:*:*","matchCriteriaId":"C4C2D913-808F-4705-8AD5-17157FA833C0"}]}]}],"references":[{"url":"http://www.ibm.com/support/docview.wss?uid=swg21986033","source":"psirt@us.ibm.com","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/95100","source":"psirt@us.ibm.com","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.ibm.com/support/docview.wss?uid=swg21986033","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/95100","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}}]}