{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-04T23:15:52.885","vulnerabilities":[{"cve":{"id":"CVE-2014-8909","sourceIdentifier":"psirt@us.ibm.com","published":"2015-02-13T02:59:08.267","lastModified":"2026-05-06T22:30:45.220","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.0.0.x through 7.0.0.2 CF29, 8.0.0.x before 8.0.0.1 CF15, and 8.5.0 before CF05 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL."},{"lang":"es","value":"Vulnerabilidad de XSS en IBM WebSphere Portal 6.1.0.x hasta 6.1.0.6 CF27, 6.1.5.x hasta 6.1.5.3 CF27, 7.0.0.x hasta 7.0.0.2 CF29, 8.0.0.x hasta 8.0.0.1 CF15, y 8.5.0 anterior a CF05 permite a usuarios remotos autenticados inyectar secuencias de comandos web arbitrarios o HTML a través de una URL manipulada."}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:S/C:N/I:P/A:N","baseScore":3.5,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"SINGLE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":6.8,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-79"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:6.1.0.0:*:*:*:*:*:*:*","matchCriteriaId":"E618064A-3D05-4DC6-9A47-0EDF2427642F"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:6.1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"3DE74154-3E79-4D56-96C4-D8E644F1419D"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:6.1.0.2:*:*:*:*:*:*:*","matchCriteriaId":"FA915826-5D89-43E9-83E7-88973648302A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:6.1.0.3:*:*:*:*:*:*:*","matchCriteriaId":"C5DB29F4-59AB-439C-91C4-CDF677676C26"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:6.1.0.4:*:*:*:*:*:*:*","matchCriteriaId":"9D6CA922-11EF-4315-A09A-B4A8937E4CF4"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:6.1.0.5:*:*:*:*:*:*:*","matchCriteriaId":"526738D7-1AF8-4A8F-B833-BA0E35973A3E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:6.1.0.6:*:*:*:*:*:*:*","matchCriteriaId":"13D6BE9C-16FD-4FB4-8A87-56B42C246316"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:6.1.5.0:*:*:*:*:*:*:*","matchCriteriaId":"3F1964FC-672F-4139-938F-A8EF9D86D9C2"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:6.1.5.1:*:*:*:*:*:*:*","matchCriteriaId":"C5B50CEA-AFC4-4B45-9954-519965237FC3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:6.1.5.2:*:*:*:*:*:*:*","matchCriteriaId":"0902AC0F-EA4D-4E65-A70A-15DE9B904B35"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:6.1.5.3:*:*:*:*:*:*:*","matchCriteriaId":"D808F95D-C6BD-43EB-B16C-66449977BCFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:7.0.0.0:*:*:*:*:*:*:*","matchCriteriaId":"D303B0B9-CDAB-409B-AE44-512D4791C36F"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:7.0.0.1:*:*:*:*:*:*:*","matchCriteriaId":"C6ECEE98-B276-4ED6-AA5A-109EA57E9925"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_portal:8.0.0.0:*:*:*:*:*:*:*","matchCriteriaId":"C90EF7A4-8181-42C3-BB95-395D0DD94C14"}]}]}],"references":[{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg1PI30620","source":"psirt@us.ibm.com"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21694738","source":"psirt@us.ibm.com","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/99250","source":"psirt@us.ibm.com"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg1PI30620","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21694738","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/99250","source":"af854a3a-2127-422b-91ae-364da2661108"}]}}]}