Cross-site scripting (XSS) vulnerability in the search center in IBM WebSphere Portal 7.0.0.1 before CF004 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.Referenceshttp://osvdb.org/72500http://www-01.ibm.com/support/docview.wss?uid=swg1PM36644http://www.ibm.com/support/docview.wss?uid=swg24029452http://secunia.com/advisories/44700http://www.securityfocus.com/bid/47954http://www-01.ibm.com/support/docview.wss?uid=swg1PM37009https://exchange.xforce.ibmcloud.com/vulnerabilities/67594