First published: Sat Jan 09 2010(Updated: )
Ultra-light Mode in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.241 for Domino 8.0.2 FP3 does not properly handle script commands in the status-alerts URL, which has unspecified impact and attack vectors, aka SPR LSHR7TBM58.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Lotus iNotes | <=229.231 | |
IBM Lotus iNotes | =229.011 | |
IBM Lotus iNotes | =229.021 | |
IBM Lotus iNotes | =229.031 | |
IBM Lotus iNotes | =229.041 | |
IBM Lotus iNotes | =229.051 | |
IBM Lotus iNotes | =229.061 | |
IBM Lotus iNotes | =229.101 | |
IBM Lotus iNotes | =229.111 | |
IBM Lotus iNotes | =229.131 | |
IBM Lotus iNotes | =229.141 | |
IBM Lotus iNotes | =229.151 | |
IBM Lotus iNotes | =229.161 | |
IBM Lotus iNotes | =229.171 | |
IBM Lotus iNotes | =229.181 | |
IBM Lotus iNotes | =229.191 | |
IBM Lotus iNotes | =229.201 | |
IBM Lotus iNotes | =229.211 | |
IBM Lotus iNotes | =229.221 | |
IBM Domino | =8.0.2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2010-0275 is currently classified as unspecified, indicating potential risk without detailed severity metrics.
To fix CVE-2010-0275, it is recommended to upgrade to IBM Lotus iNotes version 229.241 or later for improved security.
CVE-2010-0275 affects all IBM Lotus iNotes versions prior to 229.241, including earlier versions like 229.231.
CVE-2010-0275 could potentially allow an attacker to manipulate script commands in the status-alerts URL, leading to unspecified impacts.
No, IBM Lotus Domino version 8.0.2.3 is not affected by CVE-2010-0275, as it is specified as a non-vulnerable version.