Lucene search

K
cveMitreCVE-2006-0662
HistoryFeb 13, 2006 - 11:06 a.m.

CVE-2006-0662

2006-02-1311:06:00
mitre
web.nvd.nist.gov
23
cve
2006
0662
cross-site scripting
xss
vulnerability
lotus domino
inotes client
email
html files

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.006

Percentile

78.8%

Cross-site scripting (XSS) vulnerability in Lotus Domino iNotes Client 6.5.4 allows remote attackers to inject arbitrary web script or HTML via email with attached html files, which are directly rendered in the browser.

Affected configurations

Nvd
Node
ibmlotus_domino_inotes_clientMatch6.5.4
VendorProductVersionCPE
ibmlotus_domino_inotes_client6.5.4cpe:2.3:a:ibm:lotus_domino_inotes_client:6.5.4:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.006

Percentile

78.8%

Related for CVE-2006-0662