Unrated severityNVD Advisory· Published Oct 24, 2018· Updated Sep 16, 2024
CVE-2018-1541
CVE-2018-1541
Description
IBM WebSphere Commerce Enterprise V7, V8, and V9 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 142596.
Affected products
27, 8, 9+ 1 more
- (no CPE)range: 7, 8, 9
- (no CPE)range: V7
Patches
Vulnerability mechanics
References
3- www.securityfocus.com/bid/105744mitrevdb-entryx_refsource_BID
- exchange.xforce.ibmcloud.com/vulnerabilities/142596mitrevdb-entryx_refsource_XF
- www.ibm.com/support/docview.wssmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.