CVE-2025-33104

All FrameworksWebSphereCWE-79CVE-2025-33104

CVE-2025-33104

State: PUBLISHED · Published: 2025-05-14 · Updated: 2025-08-20 · Assigner: ibm
Description
IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2025/33xxx/CVE-2025-33104.json