CVE-2014-3057

IBM Websphere Portal - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in the Unified Task List (UTL) Portlet for IBM WebSphere Portal 7.x and 8.x through 8.0.0.1 CF12 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.

Scores

EPSS 0.0027
EPSS Percentile 49.8%

Details

CWE
CWE-79
Status published
Products (45)
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
ibm/websphere_portal
... and 35 more
Published Jul 29, 2014
Tracked Since Feb 18, 2026