Lucene search

K
nvd[email protected]NVD:CVE-2010-0921
HistoryMar 03, 2010 - 7:30 p.m.

CVE-2010-0921

2010-03-0319:30:00
CWE-352
web.nvd.nist.gov
4

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

6.9

Confidence

Low

EPSS

0.001

Percentile

44.9%

Cross-site request forgery (CSRF) vulnerability in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.281 for Domino 8.0.2 FP4 allows remote attackers to hijack the authentication of unspecified victims via vectors related to lack of “XSS/CSRF Get Filter and Referer Check fixes.”

Affected configurations

Nvd
Node
ibmlotus_inotesRange229.271
OR
ibmlotus_inotesMatch229.011
OR
ibmlotus_inotesMatch229.021
OR
ibmlotus_inotesMatch229.031
OR
ibmlotus_inotesMatch229.041
OR
ibmlotus_inotesMatch229.051
OR
ibmlotus_inotesMatch229.061
OR
ibmlotus_inotesMatch229.101
OR
ibmlotus_inotesMatch229.111
OR
ibmlotus_inotesMatch229.131
OR
ibmlotus_inotesMatch229.141
OR
ibmlotus_inotesMatch229.151
OR
ibmlotus_inotesMatch229.161
OR
ibmlotus_inotesMatch229.171
OR
ibmlotus_inotesMatch229.181
OR
ibmlotus_inotesMatch229.191
OR
ibmlotus_inotesMatch229.201
OR
ibmlotus_inotesMatch229.211
OR
ibmlotus_inotesMatch229.221
OR
ibmlotus_inotesMatch229.231
OR
ibmlotus_inotesMatch229.241
OR
ibmlotus_inotesMatch229.251
OR
ibmlotus_inotesMatch229.261
AND
ibmlotus_dominoMatch8.0.2.4
VendorProductVersionCPE
ibmlotus_inotes*cpe:2.3:a:ibm:lotus_inotes:*:*:*:*:*:*:*:*
ibmlotus_inotes229.011cpe:2.3:a:ibm:lotus_inotes:229.011:*:*:*:*:*:*:*
ibmlotus_inotes229.021cpe:2.3:a:ibm:lotus_inotes:229.021:*:*:*:*:*:*:*
ibmlotus_inotes229.031cpe:2.3:a:ibm:lotus_inotes:229.031:*:*:*:*:*:*:*
ibmlotus_inotes229.041cpe:2.3:a:ibm:lotus_inotes:229.041:*:*:*:*:*:*:*
ibmlotus_inotes229.051cpe:2.3:a:ibm:lotus_inotes:229.051:*:*:*:*:*:*:*
ibmlotus_inotes229.061cpe:2.3:a:ibm:lotus_inotes:229.061:*:*:*:*:*:*:*
ibmlotus_inotes229.101cpe:2.3:a:ibm:lotus_inotes:229.101:*:*:*:*:*:*:*
ibmlotus_inotes229.111cpe:2.3:a:ibm:lotus_inotes:229.111:*:*:*:*:*:*:*
ibmlotus_inotes229.131cpe:2.3:a:ibm:lotus_inotes:229.131:*:*:*:*:*:*:*
Rows per page:
1-10 of 241

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

6.9

Confidence

Low

EPSS

0.001

Percentile

44.9%

Related for NVD:CVE-2010-0921