DESCRIPTION: IBM WebSphere Application Server is vulnerable to cross-site scripting.This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
CVSS Base score:5.4
CVSS Temporal Score:See:...
Subscribe to this APAR
DESCRIPTION: IBM WebSphere Application Server and IBM WebSphere Application Server Liberty are vulnerable to HTTP header injection, caused by improper validation.This could allow an attacker to conduct various attacks against the vulnerable system, including cache poisoning and cross-site scripting.
CVSS Base score:5.4
...
Weitere Beiträge ...
- PH46816:IBM WebSphere Application Server and IBM WebSphere Application Server Liberty are vulnerable to HTTP header injection (CVE-2022-34165 CVSS 5.4)
- Installation Manager portable install: WebSphere Application Server for z/OS 8.5.5.22
- Vulnerability in IBM® Java SDK affects IBM WebSphere Application Server and IBM WebSphere Application Server Liberty due to July 2022 CPU plus deferred CVE-2021-2163
- "COM.IBM.WS.ORB_8.5.0.JAR" NEEDS JDK ORB 8 CLASSES"
Seite 35 von 52