First published: Mon Jul 02 2001(Updated: )
Cross-site scripting (CSS) vulnerability in Lotus Domino 5.0.6 allows remote attackers to execute script on other web clients via a URL that ends in Javascript, which generates an error message that does not quote the resulting script.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Lotus Domino R5 Server | =5.0.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1161 is categorized as a moderate severity vulnerability due to its potential for cross-site scripting attacks.
To mitigate CVE-2001-1161, upgrade Lotus Domino to a version that is not affected by this vulnerability.
CVE-2001-1161 specifically affects IBM Lotus Domino R5 Server version 5.0.6.
CVE-2001-1161 allows remote attackers to execute JavaScript on client browsers through manipulated URLs.
The main risk associated with CVE-2001-1161 is the exploitation of the cross-site scripting vulnerability to steal cookies or perform actions as the user.