************************************************************************** WebSphere Lombardi Edition 7.2.0.5 HotFix IT04509 README FILE ************************************************************************** This README.TXT file covers the following topics: - Issues Resolved - Hot Fix Requirements - Installation - Issue Notes *************** Issues Resolved *************** IT04509 : SECURITY APAR CVE-2014-6101 - CROSS-SITE-SCRIPTING VULNERABILITYIN BPM PROCESS PORTAL USING REDIRECT-LOGIN MECHANISM ******************** Fixpack Requirements ******************** This hotfix is for use only with Websphere 7.0.0.7 and above This hotfix requires Websphere Lombardi Edition 7.2.0.5 ************ Installation ************ Win: Use the installation instructions in the file WLE-7.2.0.5-HotFix-IT04509-Install-Win.txt. Linux/Unix: Use the installation instructions in the file WLE-7.2.0.5-HotFix-IT04509-Install-Unix.txt *********** Issue Notes *********** ********************************************************************************** If you have questions about or need assistance with this fix please contact IBM Support via the Service Request tool - http://www-947.ibm.com/support/entry/portal/Open_service_request/- or by calling the appropriate software support number for your country - http://www.ibm.com/planetwide/. ********************************************************************************** Last updated: Oct 23, 2014 Copyright 2014, Lombardi Software, an IBM Company. All rights reserved.