IBM Security Bulletin: Potential cross-site scripting in the Admin Console for WebSphere Application Server (CVE-2016-8934)

There is a potential cross-site scripting vulnerability in the Admin Console for WebSphere Application Server.

CVE(s): CVE-2016-8934

Affected product(s) and affected version(s):

This vulnerability affects the following versions and releases of IBM WebSphere Application Server traditional:

  • Version 9.0
  • Version 8.5
  • Version 8.0
  • Version 7.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2lLz0Y1
X-Force Database: http://ift.tt/2ilu2PU

The post IBM Security Bulletin: Potential cross-site scripting in the Admin Console for WebSphere Application Server (CVE-2016-8934) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2lLzDRf