CVE-2014-3010
Published May 30, 2014
Last updated 7 years ago
Overview
- Description
- Cross-site scripting (XSS) vulnerability in the Web UI in IBM WebSphere Service Registry and Repository (WSRR) 6.2, 6.3 before 6.3.0.6, 7.0 before 7.0.0.6, 7.5 before 7.5.0.5, and 8.0 before 8.0.0.3 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
- Source
- psirt@us.ibm.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-79
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:6.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0011AA10-9CC2-4F97-8129-BB6C96CF12D1" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:6.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "61668962-B744-40C2-8FFA-D6E48E841049" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:6.3.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "92100CDC-DDA3-4AB3-829E-A936707EE6D4" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:6.3.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BB11FDAF-3927-4609-920A-14449229A771" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:6.3.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DB8DA020-7993-4C6D-A9AC-8E7D02375677" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:6.3.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "482DF55E-119B-4B70-93DA-D6193C10D023" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:6.3.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "22A2E36E-5D69-4290-9FA7-649CF479D1AD" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:7.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9F0A1926-D9D5-45EF-AA33-185093A88074" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:7.0.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6AE93FF0-3F54-48CC-B300-C061ACDC4639" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:7.0.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DB1D1124-9E01-4196-B851-E9A23F766E3A" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:7.0.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4ADF778C-0771-42DF-A8D7-9F725D9584C2" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:7.0.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1EE7B42E-5A06-4DEE-80BF-D7F886AE813F" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:7.0.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "74E51654-42DB-4400-B687-7134763AB451" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:7.5.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A9569031-62CA-44C5-9FB0-69D107989BAF" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:7.5.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "669203FD-A817-4105-9862-6925A7347F32" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:7.5.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "998C56B9-E716-40AE-A692-0BCA22FD529A" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:7.5.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "35BFBDE1-5658-41F6-BA2C-2AF21458C604" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:7.5.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E343E4D4-BC27-4133-A4D0-7BC31A218BA8" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:8.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3F00C813-95EA-4A87-AEEA-F3E7337C0C93" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:8.0.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "60672CF6-8FBF-432E-8F60-B45FA6F6E276" }, { "criteria": "cpe:2.3:a:ibm:websphere_service_registry_and_repository:8.0.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CE60F797-DBCF-4A06-8C4E-9A42A1410304" } ], "operator": "OR" } ] } ]