top of page
perceptive_background_267k.jpg

IBM WebSphere Application Server 9.0, and 8.5 is affected by a cross-site scripting vulnerability in the administrative console's integrated help system.

Published:

29 juni 2026 om 22:00:00

Alert date:

30 juni 2026 om 21:06:12

Source:

nvd.nist.gov

Click to open the original link from this advisory

Enterprise Applications, Web Technologies

IBM WebSphere Application Server versions 9.0 and 8.5 are affected by a cross-site scripting (XSS) vulnerability located in the administrative console's integrated help system. This vulnerability could allow attackers to inject malicious scripts into the help interface, potentially affecting administrators or users accessing the console. The vulnerability is tracked under CVE-2026-11708 and has been published by NVD. IBM has issued a support advisory providing remediation guidance. The affected versions represent widely deployed enterprise application server software, making this a notable security concern for organizations running these versions.

Technical details

Mitigation steps:

Affected products:

IBM WebSphere Application Server 9.0
IBM WebSphere Application Server 8.5

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page