Cross-Site Scripting Vulnerability in IBM WebSphere Portal
CVE-2014-3057
Currently unrated
Key Information:
- Vendor
- IBM
- Vendor
- CVE Published:
- 29 July 2014
Summary
This vulnerability allows remote attackers to execute arbitrary scripts on user browsers by injecting malicious URLs into the Unified Task List (UTL) Portlet of IBM WebSphere Portal. By exploiting this XSS flaw, attackers can manipulate the user experience, steal sensitive information, or perform actions on behalf of the user without consent, thereby compromising the security of the affected web applications.
References
Timeline
Vulnerability published
Vulnerability Reserved