CVE-2016-8934
Description
IBM WebSphere Application Server is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
CWE
- (none)
Affected
- IBM Corporation / WebSphere Application Server for Bluemix — v=n/a [affected]
CVSS
- (none)
References
- http://www.ibm.com/support/docview.wss?uid=swg21995995 x_refsource_CONFIRM
- http://www.securityfocus.com/bid/95154 vdb-entry, x_refsource_BID
Source
cvelistV5-main/cves/2016/8xxx/CVE-2016-8934.json