← Back

CVE-2018-1416

nvd nist
Published: Feb 27, 2018Modified: Nov 21, 2024

JSON object

Loading...
6.1
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

IBM WebSphere Portal 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138822.

Affected (87)

1 product
Websphere Portal
Configuration A
87 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 7.0.0.0
Version 7.0.0.1
Version 7.0.0.1 cf002
Version 7.0.0.1 cf003
Version 7.0.0.1 cf004
Version 7.0.0.1 cf005
Version 7.0.0.1 cf006
Version 7.0.0.1 cf007
Version 7.0.0.1 cf008
Version 7.0.0.1 cf009
Version 7.0.0.1 cf010
Version 7.0.0.1 cf011
Version 7.0.0.1 cf012
Version 7.0.0.1 cf013
Version 7.0.0.1 cf014
Version 7.0.0.1 cf015
Version 7.0.0.1 cf016
Version 7.0.0.1 cf017
Version 7.0.0.1 cf018
Version 7.0.0.1 cf019
Version 7.0.0.1 cf020
Version 7.0.0.2
Version 7.0.0.2 cf011
Version 7.0.0.2 cf012
Version 7.0.0.2 cf013
Version 7.0.0.2 cf014
Version 7.0.0.2 cf015
Version 7.0.0.2 cf016
Version 7.0.0.2 cf017
Version 7.0.0.2 cf018
Version 7.0.0.2 cf019
Version 7.0.0.2 cf020
Version 7.0.0.2 cf021
Version 7.0.0.2 cf022
Version 7.0.0.2 cf023
Version 7.0.0.2 cf024
Version 7.0.0.2 cf025
Version 7.0.0.2 cf026
Version 7.0.0.2 cf027
Version 7.0.0.2 cf028
Version 7.0.0.2 cf029
Version 7.0.0.2 cf030
Version 8.0.0.0
Version 8.0.0.0 cf01
Version 8.0.0.0 cf02
Version 8.0.0.0 cf03
Version 8.0.0.0 cf04
Version 8.0.0.0 cf05
Version 8.0.0.1
Version 8.0.0.1 cf04
Version 8.0.0.1 cf05
Version 8.0.0.1 cf06
Version 8.0.0.1 cf07
Version 8.0.0.1 cf08
Version 8.0.0.1 cf09
Version 8.0.0.1 cf10
Version 8.0.0.1 cf11
Version 8.0.0.1 cf12
Version 8.0.0.1 cf13
Version 8.0.0.1 cf14
Version 8.0.0.1 cf15
Version 8.0.0.1 cf16
Version 8.0.0.1 cf17
Version 8.0.0.1 cf18
Version 8.0.0.1 cf19
Version 8.0.0.1 cf20
Version 8.0.0.1 cf21
Version 8.0.0.1 cf22
Version 8.5.0.0
Version 8.5.0.0 cf01
Version 8.5.0.0 cf02
Version 8.5.0.0 cf03
Version 8.5.0.0 cf04
Version 8.5.0.0 cf05
Version 8.5.0.0 cf06
Version 8.5.0.0 cf07
Version 8.5.0.0 cf08
Version 8.5.0.0 cf09
Version 8.5.0.0 cf10
Version 8.5.0.0 cf11
Version 8.5.0.0 cf12
Version 8.5.0.0 cf13
Version 8.5.0.0 cf14
Version 8.5.0.0 cf15
Version 9.0.0.0
Version 9.0.0.0 cf14
Version 9.0.0.0 cf15

References (6)

Source: psirt@us.ibm.com
PatchVendor Advisory
Source: psirt@us.ibm.com
Third Party AdvisoryVDB Entry
Source: psirt@us.ibm.com
VDB EntryVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
VDB EntryVendor Advisory

Timeline

No history available yet.