CVE-2015-7455: IBM WebSphere Portal

Low severity, CVSS 3.1. EPSS: 0.7% chance of exploitation in the next 30 days.

IBM WebSphere Portal 7.x through 7.0.0.2 CF29, 8.0.x before 8.0.0.1 CF20, and 8.5.x before 8.5.0.0 CF09 uses weak permissions for content items, which allows remote authenticated users to make modifications via the authoring UI.

Affected products

  • IBM WebSphere Portal: version 7.0.0.0 only; version 7.0.0.1 only; version 7.0.0.2 only; version 8.0.0.0 only; version 8.0.0.1 only; version 8.5.0.0 only

Published 2016-02-29. Last modified 2026-06-17.