Computer Security
[EN] securityvulns.ru no-pyccku


IBM Lotus Notes Traveler security vulnerabilities
Published:09.01.2014
Source:
SecurityVulns ID:13516
Type:remote
Threat Level:
6/10
Description:Crossite scripting, CSRF.
Affected:IBM : Lotus Notes Traveler 8.5
CVE:CVE-2012-4844 (Cross-site scripting (XSS) vulnerability in the web server in IBM Lotus Domino 8.5.x through 8.5.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.)
 CVE-2012-4842 (Open redirect vulnerability in the web server in IBM Lotus Domino 8.5.x through 8.5.3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.)
Original documentdocumentMustLive, CSRF, XSS and Redirector vulnerabilities in IBM Lotus Notes Traveler (09.01.2014)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod