Cross-Site Scripting Vulnerability in IBM WebSphere Portal
CVE-2018-1445
5.4MEDIUM
What is CVE-2018-1445?
IBM WebSphere Portal versions 8.0.0 to 8.5 and 9.0 are susceptible to a cross-site scripting vulnerability that enables attackers to embed arbitrary JavaScript code through the web interface. This exploitation can result in unauthorized manipulation of functionality and may potentially expose sensitive information, including user credentials, during a trusted session.
Affected Version(s)
WebSphere Portal 8.0
WebSphere Portal 8.0.0.1
WebSphere Portal 8.5