CVE-2014-4760: Medium severity ibm websphere portal vulnerability
Open redirect vulnerability in IBM WebSphere Portal 6.1.0.0 through 6.1.0.6 CF27, 6.1.5.0 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF28, 8.0.0 before 8.0.0.1 CF13, and 8.5.0 before CF01 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a crafted URL.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-4760?
CVE-2014-4760 is classified as a high severity vulnerability due to its potential for exploitation in phishing attacks.
How do I fix CVE-2014-4760?
To fix CVE-2014-4760, users should upgrade to the latest version of IBM WebSphere Portal that addresses this vulnerability.
What type of vulnerability is CVE-2014-4760?
CVE-2014-4760 is an open redirect vulnerability that allows unauthorized redirection to arbitrary websites.
What software versions are affected by CVE-2014-4760?
CVE-2014-4760 affects IBM WebSphere Portal versions 6.1.0.0 through 6.1.0.6, 6.1.5.0 through 6.1.5.3, 7.0.0 through 7.0.0.2, 8.0.0 before 8.0.0.1, and 8.5.0 before CF01.
Can CVE-2014-4760 be exploited remotely?
Yes, CVE-2014-4760 can be exploited remotely, allowing attackers to redirect users via crafted URLs.