VendorsIBMwebsphere_portal_unified_task_list_portletall versions
Vulnerabilities

IBM WebSphere Portal Unified Task List Portlet (UTL)

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2014-3055
SQL injection vulnerability in the Unified Task List (UTL) Portlet for IBM WebSphere Portal 7.x and 8.x through 8.0.0.1 CF12 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Published 2014-07-29 · Modified
7.5EPSS 0.019
CVE-2014-3054
Multiple open redirect vulnerabilities in the Unified Task List (UTL) Portlet for IBM WebSphere Portal 7.x and 8.x through 8.0.0.1 CF12 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
Published 2014-07-29 · Modified
5.8EPSS 0.018
CVE-2014-3056
The Unified Task List (UTL) Portlet for IBM WebSphere Portal 7.x and 8.x through 8.0.0.1 CF12 allows remote attackers to obtain potentially sensitive information about environment variables and JAR versions via unspecified vectors.
Published 2014-07-29 · Modified
5.0EPSS 0.021
CVE-2014-3057
Cross-site scripting (XSS) vulnerability in the Unified Task List (UTL) Portlet for IBM WebSphere Portal 7.x and 8.x through 8.0.0.1 CF12 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
Published 2014-07-29 · Modified
4.3EPSS 0.018