Vulnerability Bulletins

IBM Security Bulletin: Cross-site scripting vulnerability in IBM WebSphere Application Server (CVE-2015-7417)

   
Affected software IBM
 
There is a cross-site scripting vulnerability in IBM WebSphere Application Server for any consumers of the OAuth provider output. CVE(s): CVE-2015-7417Affected product(s) and affected version(s):This vulnerability affects the following versions and releases of IBM WebSphere Application Server for any consumers of the OAuth provider output Version 8.5.5 Full Profile and Liberty Profile Version 8.5 Full Profile and Liberty Profile Version 8.0 Version 7.0 Refer to the following reference

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_cross_site_scripting_vulnerability_in_ibm_websphere_application_server_cve_2015_7417?lang=en_us