CVE-2014-0953
IBM Websphere Portal - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0.0 through 6.1.0.6 CF27, 6.1.5.0 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF28, and 8.0.0 before 8.0.0.1 CF12 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
References (4)
Scores
EPSS
0.0023
EPSS Percentile
45.5%
Details
CWE
CWE-79
Status
published
Products (16)
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
... and 6 more
Published
Aug 12, 2014
Tracked Since
Feb 18, 2026