Vulnerability Bulletins

IBM Security Bulletin: Cross-site scripting vulnerability in IBM WebSphere Application Server (CVE-2016-0283)

   
Affected software IBM
 
There is a cross-site scripting vulnerability in WebSphere Application Server Liberty when using the OpenID Connect (OIDC) client. CVE(s): CVE-2016-0283Affected product(s) and affected version(s):This vulnerability affects the following versions and releases of IBM WebSphere Application Server Version 8.5.5 Liberty Profile Refer to the following reference URLs for remediation and additional vulnerability details:Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_cross_site_scripting_vulnerability_in_ibm_websphere_application_server_cve_2016_0283?lang=en_us