Lucene search

K
nvd[email protected]NVD:CVE-2008-2163
HistoryMay 13, 2008 - 5:20 p.m.

CVE-2008-2163

2008-05-1317:20:00
CWE-79
web.nvd.nist.gov
4

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.4

Confidence

High

EPSS

0.002

Percentile

61.6%

Cross-site scripting (XSS) vulnerability in IBM Lotus Quickr 8.1 before Hotfix 5 for Windows and AIX, and before Hotfix 3 for i5/OS, allows remote attackers to inject arbitrary web script or HTML via unknown vectors related to “WYSIWYG editors.”

Affected configurations

Nvd
Node
ibmaix
OR
ibmi5os
OR
microsoftwindows_nt
AND
ibmlotus_quickrMatch8.1
VendorProductVersionCPE
ibmaix*cpe:2.3:o:ibm:aix:*:*:*:*:*:*:*:*
ibmi5os*cpe:2.3:o:ibm:i5os:*:*:*:*:*:*:*:*
microsoftwindows_nt*cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*
ibmlotus_quickr8.1cpe:2.3:a:ibm:lotus_quickr:8.1:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.4

Confidence

High

EPSS

0.002

Percentile

61.6%

Related for NVD:CVE-2008-2163