CVE-2009-4239: XSS
Published Dec 9, 2009
·Updated
Cross-site scripting (XSS) vulnerability in the Web console in IBM InfoSphere Information Server 8.1 before FP1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
1 affected component
IBM InfoSphere Information Server=8.1
Event History
Dec 9, 2009
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2009-4239?
CVE-2009-4239 has been rated as a medium severity vulnerability due to its potential to allow remote attackers to execute arbitrary web scripts.
2
How do I fix CVE-2009-4239?
To mitigate CVE-2009-4239, it is recommended to update IBM InfoSphere Information Server to version 8.1 Fix Pack 1 or later.
3
Who is affected by CVE-2009-4239?
CVE-2009-4239 affects users of IBM InfoSphere Information Server version 8.1 prior to Fix Pack 1.
4
What type of vulnerability is CVE-2009-4239?
CVE-2009-4239 is classified as a cross-site scripting (XSS) vulnerability.
5
What can attackers do with CVE-2009-4239?
Attackers exploiting CVE-2009-4239 can inject arbitrary web scripts or HTML into the affected application.