Vulnerability Bulletins |
IBM Security Bulletin: WebSphere Message Broker and IBM Integration Bus are affected by cross-site scripting (XSS) Vulnerabilities in Dojo Toolkit |
|
| Affected software | IBM |
|
WebSphere Message Broker and IBM Integration Bus using the IBM Dojo Toolkit and providing the dojox/form/resources/fileuploader.swf, dojox/form/resources/uploader.swf, dojox/av/resources/audio.swf or dojox/av/resources/video.swf files are subjected to a cross-site scripting (XSS) vulnerability. CVE(s): CVE-2014-8917 Affected product(s) and affected version(s): IBM WebSphere Message Broker V8 IBM Integration Bus V9 Refer to the following reference URLs for remediation and additional More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_websphere_message_broker_and_ibm_integration_bus_are_affected_by_cross_site_scripting_xss_vulnerabilities_in_dojo_toolkit?lang=en_us |
|






