VYPR
Medium severity4.3NVD Advisory· Published Nov 13, 2018· Updated Jun 17, 2026

CVE-2018-1808

CVE-2018-1808

Description

IBM WebSphere Commerce 9.0.0.0 through 9.0.0.6 could allow some server-side code injection due to inadequate input control. IBM X-Force ID: 149828.

Affected products

3
  • cpe:2.3:a:ibm:websphere_commerce:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:ibm:websphere_commerce:*:*:*:*:*:*:*:*range: >=9.0.0.0,<=9.0.0.6
    • (no CPE)range: 9.0.0.0 - 9.0.0.6
    • (no CPE)range: 9.0.0.0

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.