CVE-2015-1908 Information

Description

Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27 6.1.5 through 6.1.5.3 CF27 7.0.0 through 7.0.0.2 CF29 8.0.0 before 8.0.0.1 CF16 and 8.5.0 through CF05 as used in Web Content Manager and other products allows remote attackers to inject arbitrary web script or HTML via a crafted URL.

Reference

http://www.securityfocus.com/bid/74218 http://www.securitytracker.com/id/1032189 http://www-01.ibm.com/support/docview.wss?uid=swg1PI37661 http://www-01.ibm.com/support/docview.wss?uid=swg21701566

Share on: