{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-17T11:20:40.797","vulnerabilities":[{"cve":{"id":"CVE-2024-49343","sourceIdentifier":"psirt@us.ibm.com","published":"2025-07-28T16:15:24.433","lastModified":"2025-08-06T17:12:57.630","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"IBM Informix Dynamic Server 12.10 and 14.10 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site."},{"lang":"es","value":"IBM Informix Dynamic Server 12.10 y 14.10 es vulnerable a la inyección de HTML. Un atacante remoto podría inyectar código HTML malicioso que, al visualizarse, se ejecutaría en el navegador web de la víctima dentro del contexto de seguridad del sitio web que lo aloja."}],"metrics":{"cvssMetricV31":[{"source":"psirt@us.ibm.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N","baseScore":5.4,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":2.3,"impactScore":2.7}]},"weaknesses":[{"source":"psirt@us.ibm.com","type":"Secondary","description":[{"lang":"en","value":"CWE-80"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:informix_dynamic_server:12.10:-:*:*:-:*:*:*","matchCriteriaId":"0DF4C5FA-F078-4F65-AE4A-3F6DECE5B61A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:informix_dynamic_server:14.10:*:*:*:*:*:*:*","matchCriteriaId":"B33D65F4-09CB-4C6C-8D0D-D9EA513F4E07"}]}]}],"references":[{"url":"https://www.ibm.com/support/pages/node/7240777","source":"psirt@us.ibm.com","tags":["Vendor Advisory"]}]}}]}