Lucene search

K
cveMitreCVE-2006-4843
HistoryMar 29, 2007 - 9:19 p.m.

CVE-2006-4843

2007-03-2921:19:00
mitre
web.nvd.nist.gov
27
ibm
lotus
domino
xss
vulnerability
security
nvd

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.5

Confidence

High

EPSS

0.085

Percentile

94.5%

Cross-site scripting (XSS) vulnerability in the Active Content Filter feature in IBM Lotus Domino before 6.5.6 and 7.x before 7.0.2 FP1 allows remote attackers to inject arbitrary web script or HTML via unspecified “code sequences” that bypass the protection scheme.

Affected configurations

Nvd
Node
ibmlotus_dominoMatch6.5.0
OR
ibmlotus_dominoMatch6.5.1
OR
ibmlotus_dominoMatch6.5.2
OR
ibmlotus_dominoMatch6.5.3
OR
ibmlotus_dominoMatch6.5.4
OR
ibmlotus_dominoMatch6.5.4fp1
OR
ibmlotus_dominoMatch6.5.4fp2
OR
ibmlotus_dominoMatch6.5.5
OR
ibmlotus_dominoMatch6.5.5fp1
OR
ibmlotus_dominoMatch6.5.5fp2
OR
ibmlotus_dominoMatch7.0
OR
ibmlotus_dominoMatch7.0.1
OR
ibmlotus_dominoMatch7.0.2
VendorProductVersionCPE
ibmlotus_domino6.5.0cpe:2.3:a:ibm:lotus_domino:6.5.0:*:*:*:*:*:*:*
ibmlotus_domino6.5.1cpe:2.3:a:ibm:lotus_domino:6.5.1:*:*:*:*:*:*:*
ibmlotus_domino6.5.2cpe:2.3:a:ibm:lotus_domino:6.5.2:*:*:*:*:*:*:*
ibmlotus_domino6.5.3cpe:2.3:a:ibm:lotus_domino:6.5.3:*:*:*:*:*:*:*
ibmlotus_domino6.5.4cpe:2.3:a:ibm:lotus_domino:6.5.4:*:*:*:*:*:*:*
ibmlotus_domino6.5.4cpe:2.3:a:ibm:lotus_domino:6.5.4:*:fp1:*:*:*:*:*
ibmlotus_domino6.5.4cpe:2.3:a:ibm:lotus_domino:6.5.4:*:fp2:*:*:*:*:*
ibmlotus_domino6.5.5cpe:2.3:a:ibm:lotus_domino:6.5.5:*:*:*:*:*:*:*
ibmlotus_domino6.5.5cpe:2.3:a:ibm:lotus_domino:6.5.5:*:fp1:*:*:*:*:*
ibmlotus_domino6.5.5cpe:2.3:a:ibm:lotus_domino:6.5.5:*:fp2:*:*:*:*:*
Rows per page:
1-10 of 131

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.5

Confidence

High

EPSS

0.085

Percentile

94.5%

Related for CVE-2006-4843