Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 7.x prior to 7.0.0.2 CF25 and 8.x prior to 8.0.0.1 CF8 allows remote authenticated users to inject arbitrary web script or HTML by leveraging improper tagging functionality.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ibm websphere portal 7.0.0.1 |
||
ibm websphere portal 7.0.0.2 |
||
ibm websphere portal 7.0.0.0 |
||
ibm websphere portal 8.0.0.0 |
||
ibm websphere portal 8.0.0.1 |