CVE-2015-1944: XSS
Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 8.0.0 before 8.0.0.1 CF17 and 8.5.0 before CF06 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1944?
CVE-2015-1944 is considered a medium severity vulnerability due to its potential for exploitation through a cross-site scripting attack.
How do I fix CVE-2015-1944?
To fix CVE-2015-1944, upgrade IBM WebSphere Portal to version 8.0.0.1 CF17 or 8.5.0 CF06 or later.
Who is affected by CVE-2015-1944?
CVE-2015-1944 affects authenticated users of IBM WebSphere Portal versions earlier than 8.0.0.1 CF17 and 8.5.0 CF06.
What types of attacks can be performed using CVE-2015-1944?
CVE-2015-1944 allows attackers to perform cross-site scripting (XSS) attacks, potentially injecting malicious scripts into web pages.
Can CVE-2015-1944 be exploited remotely?
Yes, CVE-2015-1944 can be exploited remotely by authenticated users through crafted URLs.