IBM Security Bulletin: Cross-site scripting vulnerability in Admin Console for WebSphere Application Server (CVE-2017-1380)

There is a potential cross-site scripting vulnerability in the Admin Console for WebSphere Application Server.

CVE(s): CVE-2017-1380

Affected product(s) and affected version(s):

This vulnerability affects the following versions and releases of IBM WebSphere Application Server:

  • Version 9.0
  • Version 8.5
  • Version 8.0
  • Version 7.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2uhMiND
X-Force Database: http://ift.tt/2uPZxIE

The post IBM Security Bulletin: Cross-site scripting vulnerability in Admin Console for WebSphere Application Server (CVE-2017-1380) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2ui7Bi4