Back to search
CVE-2016-2862
Published: Jul 3, 2016
Modified: Aug 5, 2024
PUBLISHED
Description
Cross-site scripting (XSS) vulnerability in IBM WebSphere Commerce 6.0 through 6.0.0.11, 7.0 before 7.0.0.9 cumulative iFix 3, and 8.0 before 8.0.0.5 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
JR55049
vendor-advisory
x_refsource_AIXAPAR
JR55139
vendor-advisory
x_refsource_AIXAPAR
1036206
vdb-entry
x_refsource_SECTRACK
JR55264
vendor-advisory
x_refsource_AIXAPAR
91533
vdb-entry
x_refsource_BID
JR55141
vendor-advisory
x_refsource_AIXAPAR
http://www-01.ibm.com/support/docview.wss?uid=swg21983625
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now