CVE-2010-3470
IBM FileNet P8 Application Engine <4.0.2.7-P8AE-FP007 - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-021 and 4.0.2.x before 4.0.2.7-P8AE-FP007 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References (8)
Scores
EPSS
0.0049
EPSS Percentile
65.3%
Classification
CWE
CWE-79
Status
published
Affected Products (29)
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
ibm/filenet_p8_application_engine
... and 14 more
Timeline
Published
Sep 20, 2010
Tracked Since
Feb 18, 2026