Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:25776
HistoryFeb 22, 2011 - 12:00 a.m.

Re: Domino Sametime Multiple Reflected Cross-Site Scripting

2011-02-2200:00:00
vulners.com
28

Hi,

I discovered similar XSS affecting Domino Sametime some time ago…

This XSS affects other scripts also…

i.e. stcenter.nsf

Here's an example:

/stcenter.nsf?OpenDatabase&authReasonCode="><script>alert(document.cookie);</script>"

Cheers

Andrew