CVE-2014-3054: IBM WebSphere Portal

Medium severity, CVSS 5.8. EPSS: 1.8% chance of exploitation in the next 30 days.

Multiple open redirect vulnerabilities in the Unified Task List (UTL) Portlet for IBM WebSphere Portal 7.x and 8.x through 8.0.0.1 CF12 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

Affected products

  • IBM WebSphere Portal: version 7.0.0.0 only; version 7.0.0.1 only; version 7.0.0.2 only; version 8.0.0.0 only; version 8.0.0.1 only
  • IBM WebSphere Portal Unified Task List Portlet: version 6.0.1 only

Published 2014-07-29. Last modified 2026-06-17.