First published: Wed Sep 21 2005(Updated: )
Cross-site scripting (XSS) vulnerability in IBM Lotus Domino 6.5.2 allows remote attackers to inject arbitrary web script or HTML via the (1) BaseTarget or (2) Src parameters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Lotus Domino | =6.5.2 | |
Ibm Lotus Domino Enterprise Server | =6.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2005-3015 is considered moderate due to its ability to allow cross-site scripting attacks.
To fix CVE-2005-3015, update to a patched version of IBM Lotus Domino that addresses this vulnerability.
IBM Lotus Domino versions 6.5.2 and IBM Lotus Domino Enterprise Server 6.5.2 are affected by CVE-2005-3015.
CVE-2005-3015 can enable remote attackers to perform cross-site scripting attacks by injecting arbitrary web script or HTML.
A temporary workaround for CVE-2005-3015 may include sanitizing or validating user input for the BaseTarget and Src parameters.