← Back

CVE-2014-4762

nvd nist
Published: Sep 12, 2014Modified: May 6, 2026

JSON object

Loading...
3.5
Vector
AV:N/AC:M/Au:S/C:N/I:P/A:N
Exploitability: 6.8 / Impact: 2.9
Source: NVD

Description

Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 8.0.0 through 8.0.0.1 CF13 and 8.5.0 before CF02 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.

Affected (18)

1 product
Websphere Portal
Configuration A
18 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 8.0.0.0
Version 8.0.0.0 cf01
Version 8.0.0.0 cf02
Version 8.0.0.0 cf03
Version 8.0.0.0 cf04
Version 8.0.0.0 cf05
Version 8.0.0.1
Version 8.0.0.1
Version 8.0.0.1 cf04
Version 8.0.0.1 cf05
Version 8.0.0.1 cf06
Version 8.0.0.1 cf07
Version 8.0.0.1 cf08
Version 8.0.0.1 cf09
Version 8.0.0.1 cf12
Version 8.0
Version 8.5.0.0
Version 8.5.0.0 cf01

References (8)

Source: psirt@us.ibm.com
Source: psirt@us.ibm.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.