Ibm · Ibm Websphere Application Server · CVE-2024-45073
**Name of the Vulnerable Software and Affected Versions**
IBM WebSphere Application Server versions 8.5 through 9.0
**Description**
This issue allows a privileged user to embed arbitrary JavaScript code in the Web UI, potentially altering the intended functionality and leading to credentials disclosure within a trusted session. The vulnerability is related to stored cross-site scripting.
**Recommendations**
For IBM WebSphere Application Server versions 8.5 through 9.0, update to a version that includes the fix for this issue to prevent stored cross-site scripting attacks.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.