Vulnerabilities > IBM > Websphere Portal

DATE CVE VULNERABILITY TITLE RISK
2018-03-14 CVE-2018-1444 Cross-site Scripting vulnerability in IBM Websphere Portal 8.5.0.0/9.0.0.0
IBM WebSphere Portal 8.5 and 9.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2018-02-27 CVE-2018-1416 Cross-site Scripting vulnerability in IBM Websphere Portal
IBM WebSphere Portal 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
6.1
2018-02-09 CVE-2018-1401 Cross-site Scripting vulnerability in IBM Websphere Portal 8.0.0.0/8.5.0.0/9.0.0.0
IBM WebSphere Portal 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
6.1
2018-02-09 CVE-2017-1761 Cross-site Scripting vulnerability in IBM Websphere Portal
IBM WebSphere Portal 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
6.1
2018-01-11 CVE-2018-1361 Cross-site Scripting vulnerability in IBM Websphere Portal 8.5.0.0/9.0.0.0
IBM WebSphere Portal 8.5 and 9.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
6.1
2017-12-27 CVE-2017-1698 Information Exposure vulnerability in IBM Websphere Portal
IBM WebSphere Portal 7.0, 8.0, 8.5, and 9.0 could reveal sensitive information from an error message that could lead to further attacks against the system.
network
low complexity
ibm CWE-200
5.3
2017-12-20 CVE-2017-1423 Information Exposure vulnerability in IBM Websphere Portal 8.5.0.0/9.0.0.0
IBM WebSphere Portal 8.5 and 9.0 exposes backend server URLs that are configured for usage by the Web Application Bridge component.
network
low complexity
ibm CWE-200
5.3
2017-12-11 CVE-2017-1536 Cross-site Scripting vulnerability in IBM Websphere Portal
IBM Support Tools for Lotus WCM (IBM WebSphere Portal 7.0, 8.0, 8.5 and 9.0) is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2017-09-28 CVE-2017-1577 Path Traversal vulnerability in IBM Websphere Portal
IBM WebSphere Portal 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to traverse directories on the system.
network
low complexity
ibm CWE-22
7.5
2017-09-07 CVE-2017-1189 Cross-site Scripting vulnerability in IBM Websphere Portal
IBM WebSphere Portal and Web Content Manager 6.1, 7.0, and 8.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
6.1