CVE-2012-0716

IBM WebSphere App Server <7.0.0.23 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in the Administration Console in IBM WebSphere Application Server 7.0 before 7.0.0.23 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Scores

EPSS 0.0027
EPSS Percentile 49.9%

Classification

CWE
CWE-79
Status published

Affected Products (17)

ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
ibm/websphere_application_server
... and 2 more

Timeline

Published Jun 20, 2012
Tracked Since Feb 18, 2026