IT

Tracker / CVE-2026-11707

CVE-2026-11707

Critical 9.3

IBM Tivoli System Automation Application Manager 4.1 and IBM WebSphere Application Server is affected by a cross-site scripting vulnerability in the administrative console login page.

Affected products and versions

ibm tivoli_system_automation_application_manager · 4.1.0 → 4.1.0.7
ibm websphere_application_server · 8.5 → 8.5.5.30
ibm websphere_application_server · 9.0 → 9.0.5.29

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References