CVE-2009-0855: XSS
Cross-site scripting (XSS) vulnerability in the administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.23 on z/OS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-0855?
CVE-2009-0855 is considered to have a medium severity rating due to the potential for cross-site scripting attacks in IBM WebSphere Application Server.
How do I fix CVE-2009-0855?
To fix CVE-2009-0855, you should upgrade to IBM WebSphere Application Server version 6.1.0.23 or later.
What systems are affected by CVE-2009-0855?
CVE-2009-0855 affects multiple versions of IBM WebSphere Application Server 6.1, particularly those prior to version 6.1.0.23.
What type of vulnerability is CVE-2009-0855?
CVE-2009-0855 is categorized as a cross-site scripting (XSS) vulnerability.
Can CVE-2009-0855 lead to data breaches?
Yes, CVE-2009-0855 can potentially allow attackers to inject malicious scripts, which may lead to unauthorized access to sensitive information.