[WID-SEC-2026-2159] IBM WebSphere Application Server: Mehrere Schwachstellen CVSS Base Score 9.3 (kritisch) CVSS Temporal Score 8.1 (hoch) Remoteangriff ja Datum 30.06.2026 Stand 01.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Sonstiges UNIX Windows Produktbeschreibung IBM WebSphere Application Server ist ein J2EE-Applikationsserver. Produkte 30.06.2026 IBM WebSphere Application Server <9.0.5.29 IBM WebSphere Application Server Interim Fix <PH71756 IBM WebSphere Application Server <8.5.5.31 Angriff Angriff Ein Angreifer kann mehrere Schwachstellen in IBM WebSphere Application Server ausnutzen, um einen Cross-Site Scripting Angriff durchzufĂĽhren und vertrauliche Informationen offenzulegen. CVE Informationen Versionshistorie Feedback zum Advisory geben
A critical vulnerability (CVSS Base Score 9.3) in IBM WebSphere Application Server allows a remote attacker to conduct cross-site scripting attacks and disclose sensitive information. Affected versions are IBM WebSphere Application Server versions prior to 9.0.5.29 and 8.5.5.31, as well as versions requiring the Interim Fix PH71756. A mitigation is available, though the specific patched version or workaround details are not provided in the advisory.