Lucene search

K
nvd[email protected]NVD:CVE-2011-1106
HistoryMar 01, 2011 - 11:00 p.m.

CVE-2011-1106

2011-03-0123:00:03
CWE-79
web.nvd.nist.gov
7

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.6

Confidence

High

EPSS

0.002

Percentile

61.2%

Cross-site scripting (XSS) vulnerability in stcenter.nsf in the server in IBM Lotus Sametime allows remote attackers to inject arbitrary web script or HTML via the authReasonCode parameter in an OpenDatabase action.

Affected configurations

Nvd
Node
ibmlotus_sametime
OR
ibmlotus_sametimeMatch8.0
OR
ibmlotus_sametimeMatch8.0.1
VendorProductVersionCPE
ibmlotus_sametime*cpe:2.3:a:ibm:lotus_sametime:*:*:*:*:*:*:*:*
ibmlotus_sametime8.0cpe:2.3:a:ibm:lotus_sametime:8.0:*:*:*:*:*:*:*
ibmlotus_sametime8.0.1cpe:2.3:a:ibm:lotus_sametime:8.0.1:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.6

Confidence

High

EPSS

0.002

Percentile

61.2%

Related for NVD:CVE-2011-1106