CVE-2007-1941: XSS
Cross-site scripting (XSS) vulnerability in the Active Content Filter feature in Domino Web Access (DWA) in IBM Lotus Notes before 6.5.6 and 7.x before 7.0.2 FP1 allows remote attackers to inject arbitrary web script or HTML via a multipart/related e-mail message, a different issue than CVE-2006-4843.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-1941?
CVE-2007-1941 is considered a medium severity vulnerability due to its potential for exploitation via cross-site scripting.
How do I fix CVE-2007-1941?
To fix CVE-2007-1941, upgrade to IBM Lotus Notes version 6.5.6 or 7.0.2 FP1 or later.
What products are affected by CVE-2007-1941?
CVE-2007-1941 affects IBM Lotus Notes versions 6.5.5, 7.0, and 7.0.1.
What type of vulnerability is CVE-2007-1941?
CVE-2007-1941 is a cross-site scripting (XSS) vulnerability that allows for the injection of arbitrary web script or HTML.
Who can exploit CVE-2007-1941?
CVE-2007-1941 can be exploited by remote attackers through specially crafted multipart/related email messages.