← Back

CVE-2014-0955

nvd nist
Published: May 22, 2014Modified: May 6, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:P/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 8.0 before 8.0.0.1 CF12, when Social Rendering in Connections integration is enabled, allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.

Affected (14)

1 product
Websphere Portal
Configuration A
14 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 8.0.0.0
Version 8.0.0.0 cf01
Version 8.0.0.0 cf02
Version 8.0.0.0 cf03
Version 8.0.0.0 cf04
Version 8.0.0.0 cf05
Version 8.0.0.1
Version 8.0.0.1 cf04
Version 8.0.0.1 cf05
Version 8.0.0.1 cf07
Version 8.0.0.1 cf08
Version 8.0.0.1 cf09
Version 8.0.0.1 cf10
Version 8.0.0.1 cf11

References (6)

Source: psirt@us.ibm.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.