CVE-2010-0704: XSS
Published Feb 25, 2010
·Updated
Cross-site scripting (XSS) vulnerability in the Portlet Palette in IBM WebSphere Portal 6.0.1.5 wp601500801 allows remote attackers to inject arbitrary web script or HTML via the search field.
Affected Software
1 affected component
IBM WebSphere Portal=6.0.1.5-wp6015_008_01
Event History
Feb 25, 2010
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·12:30 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-0704?
CVE-2010-0704 is classified as a medium severity cross-site scripting (XSS) vulnerability.
2
How do I fix CVE-2010-0704?
To fix CVE-2010-0704, apply the latest patches provided by IBM for WebSphere Portal version 6.0.1.5.
3
What systems are affected by CVE-2010-0704?
CVE-2010-0704 affects IBM WebSphere Portal version 6.0.1.5.
4
What kind of attack can be executed through CVE-2010-0704?
An attacker can exploit CVE-2010-0704 to inject arbitrary web scripts or HTML code via the search field.
5
Is CVE-2010-0704 a common vulnerability?
CVE-2010-0704 is a known vulnerability but may not be widely exploited due to the specificity of the affected software.