CVE-2024-35153

All FrameworksWebSphereCWE-79CVE-2024-35153

CVE-2024-35153

State: PUBLISHED · Published: 2024-06-27 · Updated: 2024-08-02 · Assigner: ibm
Description
IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 292640.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2024/35xxx/CVE-2024-35153.json