CVE-2010-0768
IBM WebSphere Application Server <6.0.2.41-7.0.0.9 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in the Administration Console in IBM WebSphere Application Server (WAS) 6.0 before 6.0.2.41, 6.1 before 6.1.0.31, and 7.0 before 7.0.0.9 allows remote attackers to inject arbitrary web script or HTML via the URI.
References (4)
Scores
EPSS
0.0023
EPSS Percentile
45.5%
Classification
CWE
CWE-79
Status
published
Affected Products (43)
ibm/websphere_application_server
< 6.0.2.39
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
... and 28 more
Timeline
Published
Apr 01, 2010
Tracked Since
Feb 18, 2026