CVE-2010-0921: CSRF
Cross-site request forgery (CSRF) vulnerability in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.281 for Domino 8.0.2 FP4 allows remote attackers to hijack the authentication of unspecified victims via vectors related to lack of "XSS/CSRF Get Filter and Referer Check fixes."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0921?
CVE-2010-0921 is classified as a high severity Cross-site request forgery (CSRF) vulnerability.
How do I fix CVE-2010-0921?
To fix CVE-2010-0921, you should upgrade IBM Lotus iNotes to version 229.281 or later.
What does CVE-2010-0921 affect?
CVE-2010-0921 affects various versions of IBM Lotus iNotes prior to version 229.281.
What is the impact of CVE-2010-0921?
The impact of CVE-2010-0921 includes the potential for remote attackers to hijack user authentication.
Is there a workaround for CVE-2010-0921?
There are no known workarounds for CVE-2010-0921; the only solution is to apply the security update.