TROYANOSYVIRUS
Voltar para CVEs

CVE-2014-6180

N/A

Descricao

Cross-site scripting (XSS) vulnerability in the Web UI in IBM WebSphere Service Registry and Repository (WSRR) 7.0.x before 7.0.0.5 and 7.5.x before 7.5.0.1 allows remote authenticated users to inject arbitrary web script or HTML via the HTTP User-Agent header.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado12/24/2014
Ultima modificacao4/12/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

ibm:websphere_service_registry_and_repository

Fraquezas (CWE)

CWE-79

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.