CVE-2005-2175: Medium severity IBM Lotus Notes vulnerability
Published Jul 9, 2005
·Updated
The web interface for Lotus Notes mail automatically processes HTML in an attachment without prompting the user to save or open it, which makes it easier for remote attackers to conduct web-based attacks and steal cookies.
Affected Software
1 affected component
IBM Lotus Notes
Event History
Jul 9, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2175?
CVE-2005-2175 is considered a moderate severity vulnerability.
2
How do I fix CVE-2005-2175?
To fix CVE-2005-2175, ensure you are using the latest version of IBM Lotus Notes with security updates applied.
3
What are the risks associated with CVE-2005-2175?
The risks of CVE-2005-2175 include exposure to web-based attacks and potential cookie theft by remote attackers.
4
Who is affected by CVE-2005-2175?
CVE-2005-2175 affects users of IBM Lotus Notes that utilize its web interface for handling email attachments.
5
Is there a workaround for CVE-2005-2175?
A temporary workaround for CVE-2005-2175 may involve disabling HTML email features or using a different email client.