{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-05-03T03:09:31.352","vulnerabilities":[{"cve":{"id":"CVE-2015-7417","sourceIdentifier":"psirt@us.ibm.com","published":"2016-01-23T05:59:01.627","lastModified":"2025-04-12T10:46:40.837","vulnStatus":"Deferred","cveTags":[],"descriptions":[{"lang":"en","value":"Cross-site scripting (XSS) vulnerability in IBM WebSphere Application Server 7.0 before 7.0.0.41, 8.0 before 8.0.0.12, and 8.5 before 8.5.5.9 allows remote authenticated users to inject arbitrary web script or HTML via crafted data from an OAuth provider."},{"lang":"es","value":"Vulnerabilidad de XSS en IBM WebSphere Application Server 7.0 en versiones anteriores a 7.0.0.41, 8.0 en versiones anteriores a 8.0.0.12 y 8.5 en versiones anteriores a 8.5.5.9 permite a usuarios remotos autenticados inyectar secuencias de comandos web o HTML arbitrarios a través de datos de un proveedor OAuth manipulados."}],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N","baseScore":5.4,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":2.3,"impactScore":2.7}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:S/C:N/I:P/A:N","baseScore":3.5,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"SINGLE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":6.8,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-79"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.0:*:*:*:*:*:*:*","matchCriteriaId":"5FAC5F6C-D589-4337-88AD-4693AE953D9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.1:*:*:*:*:*:*:*","matchCriteriaId":"B108457A-50DC-4432-9E30-98ADBEBF2389"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.2:*:*:*:*:*:*:*","matchCriteriaId":"4A8FC820-48D5-4850-82F7-8DA4A18EFF51"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.3:*:*:*:*:*:*:*","matchCriteriaId":"0661F4A0-A520-4443-B19D-6885920ADFE5"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.4:*:*:*:*:*:*:*","matchCriteriaId":"A553A6E7-64AA-41F2-9B92-4EC715C617B0"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.5:*:*:*:*:*:*:*","matchCriteriaId":"9BFBDE57-3895-4841-B23C-06336A7016EB"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.7:*:*:*:*:*:*:*","matchCriteriaId":"30B7A7B9-FCD1-4509-93CF-C5B736B04F4B"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.9:*:*:*:*:*:*:*","matchCriteriaId":"90BA0923-4064-49D3-82A2-EEFC4B0F9A9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.11:*:*:*:*:*:*:*","matchCriteriaId":"833256BB-E2A6-4FE9-BE4F-982578023E43"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.13:*:*:*:*:*:*:*","matchCriteriaId":"CE94EFF2-CA86-4179-8250-350DF0D2BE83"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.15:*:*:*:*:*:*:*","matchCriteriaId":"920F69CD-DEDB-4393-BE6E-B837BA6820B9"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.17:*:*:*:*:*:*:*","matchCriteriaId":"5662B903-5480-403D-BC3D-2222F88264A6"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.19:*:*:*:*:*:*:*","matchCriteriaId":"4D82C3F2-9C50-4D1A-B939-77FC53E44EDF"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.21:*:*:*:*:*:*:*","matchCriteriaId":"03E6BAB6-D0D8-4698-BCF9-05D5A256FD37"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.23:*:*:*:*:*:*:*","matchCriteriaId":"EF042A51-E34A-482C-8601-9FD09E6C866A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.25:*:*:*:*:*:*:*","matchCriteriaId":"3BFE6260-F130-44E1-9A31-985153F51385"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.27:*:*:*:*:*:*:*","matchCriteriaId":"489E4427-4059-4026-B952-72364AFFC135"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.29:*:*:*:*:*:*:*","matchCriteriaId":"B95D1940-E5AD-4B59-80B4-C3370BB03169"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.31:*:*:*:*:*:*:*","matchCriteriaId":"C7083F0E-57BA-4828-99E0-ECA8B54E2069"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.33:*:*:*:*:*:*:*","matchCriteriaId":"799B6FA0-0094-4CE9-8C63-8DBFF45E7260"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.35:*:*:*:*:*:*:*","matchCriteriaId":"ABEFAA7D-56F8-4F73-A4E9-1A164B889F2F"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.37:*:*:*:*:*:*:*","matchCriteriaId":"C39BC1E7-EDF9-4AD6-BA15-4E750903B1F3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:7.0.0.39:*:*:*:*:*:*:*","matchCriteriaId":"28AF3645-415B-40BA-8024-32F7A3FCB7AB"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.0.0.0:*:*:*:*:*:*:*","matchCriteriaId":"AF1667C5-D19B-469C-82D5-8406B6D75EDE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.0.0.1:*:*:*:*:*:*:*","matchCriteriaId":"89551609-69B7-452A-9CB2-04C12D268B41"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.0.0.2:*:*:*:*:*:*:*","matchCriteriaId":"AF27B7D7-4442-47CA-880D-D3B5412AEF9D"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.0.0.3:*:*:*:*:*:*:*","matchCriteriaId":"B595B048-4204-49B4-9497-B8D119C8784D"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.0.0.4:*:*:*:*:*:*:*","matchCriteriaId":"DC38B5D4-66A3-4671-9099-0F38D283BA94"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.0.0.5:*:*:*:*:*:*:*","matchCriteriaId":"B357DB53-061F-43D5-9E9F-5D5468A5805B"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.0.0.6:*:*:*:*:*:*:*","matchCriteriaId":"29ADADD2-EC21-4C45-A381-BC2091CD9F7B"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.0.0.7:*:*:*:*:*:*:*","matchCriteriaId":"2AD901DE-9258-40DA-A09B-B0CA9DCCF843"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.0.0.8:*:*:*:*:*:*:*","matchCriteriaId":"8C21DDD3-C1CF-4CB2-BA13-4807F17AC5E1"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.0.0.9:*:*:*:*:*:*:*","matchCriteriaId":"A6DBD14D-F0F2-4606-BC55-ECB6CCA3EF81"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.0.0.10:*:*:*:*:*:*:*","matchCriteriaId":"1F994982-0972-4AC2-A0AB-BD3E46F7AA60"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.0.0.11:*:*:*:*:*:*:*","matchCriteriaId":"7FAAF976-032D-49F7-AE25-29A85E371EBE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.5.0.0:*:*:*:*:*:*:*","matchCriteriaId":"1FD8F9CE-4E98-4187-B84A-429FA1C65E2D"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.5.0.1:*:*:*:*:*:*:*","matchCriteriaId":"FC1D7570-4AB4-44B0-B5ED-D103F0946F63"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.5.0.2:*:*:*:*:*:*:*","matchCriteriaId":"9E709E36-B5D0-42E5-A305-AF385FD7F347"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.5.5.0:*:*:*:*:*:*:*","matchCriteriaId":"49506702-1B31-4421-8DEE-5B789272EC6E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"158777FD-83D1-44B9-83B4-A3F490CA76F4"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.5.5.2:*:*:*:*:*:*:*","matchCriteriaId":"EDA2FE6B-6E42-4E97-B803-DAB671D30FF5"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.5.5.3:*:*:*:*:*:*:*","matchCriteriaId":"72F5A562-5B2E-4BC7-8A81-EFE5ED265803"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.5.5.4:*:*:*:*:*:*:*","matchCriteriaId":"168E2F18-56C6-4789-BBAC-C99D4792046F"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.5.5.5:*:*:*:*:*:*:*","matchCriteriaId":"B53EBD40-8E1A-4516-927D-ED1CF212B211"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.5.5.6:*:*:*:*:*:*:*","matchCriteriaId":"1A4E88BA-F637-4400-A64F-E6516AE8917C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.5.5.7:*:*:*:*:*:*:*","matchCriteriaId":"32C745A6-FDE7-4236-BA1D-8BB22D184AA2"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:8.5.5.8:*:*:*:*:*:*:*","matchCriteriaId":"0C8EE753-8773-4DFF-90A7-35CE45C7EC30"}]}]}],"references":[{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg1PI49272","source":"psirt@us.ibm.com"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21974520","source":"psirt@us.ibm.com","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/81738","source":"psirt@us.ibm.com"},{"url":"http://www.securitytracker.com/id/1034783","source":"psirt@us.ibm.com"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg1PI49272","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21974520","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/81738","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securitytracker.com/id/1034783","source":"af854a3a-2127-422b-91ae-364da2661108"}]}}]}