Lucene search

K
cveMitreCVE-2009-3105
HistorySep 08, 2009 - 10:30 p.m.

CVE-2009-3105

2009-09-0822:30:00
CWE-79
mitre
web.nvd.nist.gov
26
ibm
lotus
inotes
xss
vulnerability
security
ibm lotus
domino web access
dwa
nvd

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.8

Confidence

High

EPSS

0.002

Percentile

65.0%

Cross-site scripting (XSS) vulnerability in IBM Lotus iNotes (aka Domino Web Access or DWA) before 211.241 for Domino 8.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka SPR EZEL7UURYC.

Affected configurations

Nvd
Node
ibmdomino_web_accessMatch8.0.1
VendorProductVersionCPE
ibmdomino_web_access8.0.1cpe:2.3:a:ibm:domino_web_access:8.0.1:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.8

Confidence

High

EPSS

0.002

Percentile

65.0%

Related for CVE-2009-3105