Lucene search

K
cve[email protected]CVE-2012-4851
HistoryNov 14, 2012 - 12:30 p.m.

CVE-2012-4851

2012-11-1412:30:59
CWE-79
web.nvd.nist.gov
36
2
cve-2012-4851
cross-site scripting
xss
vulnerability
ibm websphere
application server
nvd

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

7.3 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

56.6%

Cross-site scripting (XSS) vulnerability in IBM WebSphere Application Server 8.5 Liberty Profile before 8.5.0.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URI.

Affected configurations

NVD
Node
ibmwebsphere_application_serverRange8.5.0.0-liberty_profile

Social References

More

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

7.3 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

56.6%

Related for CVE-2012-4851