Required CVE Record Information
Description
Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.0.0.x through 7.0.0.2 CF29, 8.0.0.x before 8.0.0.1 CF15, and 8.5.0 before CF05 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
References 3 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- www-01.ibm.com: PI30620 vendor-advisoryx_transferred
- http://www-01.ibm.com/support/docview.wss?uid=swg21694738 x_transferred
- exchange.xforce.ibmcloud.com: ibm-wsportal-cve20148909-xss(99250) vdb-entryx_transferred