4.3
CVSSv2

CVE-2010-4220

Published: 09/11/2010 Updated: 10/11/2010
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the Integrated Solution Console in the Administrative Console component in IBM WebSphere Application Server (WAS) 7.0 prior to 7.0.0.13 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors, related in part to "URL injection."

Vulnerable Product Search on Vulmon Subscribe to Product

ibm websphere application server 7.0.0.9

ibm websphere application server 7.0.0.4

ibm websphere application server 7.0.0.3

ibm websphere application server 7.0.0.12

ibm websphere application server 7.0

ibm websphere application server 7.0.0.6

ibm websphere application server 7.0.0.8

ibm websphere application server 7.0.0.7

ibm websphere application server 7.0.0.5

ibm websphere application server 7.0.0.2

ibm websphere application server 7.0.0.11

ibm websphere application server 7.0.0.10

ibm websphere application server 7.0.0.1