First published: Sat Nov 19 2011(Updated: )
Cross-site scripting (XSS) vulnerability in IBM Lotus Mobile Connect (LMC) 6.1.4 allows remote attackers to inject arbitrary web script or HTML via vectors related to a hidden redirect URL.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Lotus Mobile Connect | =6.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-4465 is classified as a high severity cross-site scripting (XSS) vulnerability.
CVE-2011-4465 allows remote attackers to inject arbitrary web scripts or HTML into IBM Lotus Mobile Connect 6.1.4.
To fix CVE-2011-4465, it is recommended to apply security patches or updates provided by IBM for Lotus Mobile Connect.
Users of IBM Lotus Mobile Connect 6.1.4 are specifically impacted by CVE-2011-4465 due to its XSS vulnerability.
A common exploitation method for CVE-2011-4465 involves attackers crafting a malicious redirect URL to inject and execute harmful scripts.