CVE-2011-2754: XSS
Cross-site scripting (XSS) vulnerability in the PageBuilder2 (aka Page Builder) theme in IBM WebSphere Portal 7.x before 7.0.0.1 CF006, as used in IBM Web Content Manager (WCM) and other products, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-2754?
The severity of CVE-2011-2754 is considered medium due to its potential for cross-site scripting attacks.
How do I fix CVE-2011-2754?
To fix CVE-2011-2754, upgrade IBM WebSphere Portal to version 7.0.0.1 or apply the relevant patches provided by IBM.
Which software is affected by CVE-2011-2754?
CVE-2011-2754 affects IBM WebSphere Portal versions prior to 7.0.0.1 and IBM Web Content Manager used within those versions.
What type of vulnerability is CVE-2011-2754?
CVE-2011-2754 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web scripts or HTML.
Can CVE-2011-2754 be exploited remotely?
Yes, CVE-2011-2754 can be exploited remotely by attackers to execute arbitrary scripts on victims' browsers.