CVE-2008-0834: XSS
Cross-site scripting (XSS) vulnerability in Lotus Quickr for i5/OS before 8.0.0.2 Hotfix 11, when anonymous access is disabled on HTTP ports, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-0834?
CVE-2008-0834 is classified as a moderate severity cross-site scripting (XSS) vulnerability.
How do I fix CVE-2008-0834?
To remediate CVE-2008-0834, apply the latest hotfix or upgrade to Lotus Quickr for i5/OS version 8.0.0.2 Hotfix 11 or later.
What are the potential impacts of CVE-2008-0834?
Exploitation of CVE-2008-0834 can allow remote attackers to inject arbitrary web scripts or HTML into affected Lotus Quickr servers.
Who is affected by CVE-2008-0834?
CVE-2008-0834 affects users of Lotus Quickr for i5/OS versions prior to 8.0.0.2 Hotfix 11 when anonymous access is disabled.
Is anonymous access a factor in CVE-2008-0834?
Yes, CVE-2008-0834 specifically allows exploitation when anonymous access is disabled on HTTP ports.