First published: Thu May 26 2011(Updated: )
Cross-site scripting (XSS) vulnerability in the search center in IBM WebSphere Portal 7.0.0.1 before CF004 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM WebSphere Portal | =7.0.0.1 | |
IBM WebSphere Portal | =7.0.0.1-cf003 | |
IBM WebSphere Portal | =7.0.0.1-cf002 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-2172 is considered a moderate severity vulnerability due to its potential for exploitation through cross-site scripting.
To fix CVE-2011-2172, apply the latest patches or updates provided by IBM for WebSphere Portal versions 7.0.0.1 and any related fix packs.
CVE-2011-2172 affects IBM WebSphere Portal version 7.0.0.1 and specific fix pack versions prior to CF004.
CVE-2011-2172 is a cross-site scripting (XSS) vulnerability that allows injection of arbitrary web scripts or HTML.
Yes, CVE-2011-2172 can potentially lead to data breaches if an attacker successfully executes malicious scripts.