CVE-2013-0538: XSS
Cross-site scripting (XSS) vulnerability in IBM Lotus Notes 8.x before 8.5.3 FP4 Interim Fix 1 and 9.0 before Interim Fix 1 allows remote attackers to inject arbitrary web script or HTML via a SCRIPT element in an HTML e-mail message, aka SPRs JMOY95BLM6 and JMOY95BN49.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0538?
CVE-2013-0538 has a moderate severity level as it involves a cross-site scripting vulnerability.
How do I fix CVE-2013-0538?
To fix CVE-2013-0538, upgrade IBM Lotus Notes to version 8.5.3 FP4 Interim Fix 1 or version 9.0 Interim Fix 1 or later.
What are the affected versions for CVE-2013-0538?
CVE-2013-0538 affects IBM Lotus Notes versions 8.0 to 8.5.3 before the specified fixes and version 9.0 before Interim Fix 1.
What is the impact of CVE-2013-0538?
The impact of CVE-2013-0538 allows attackers to inject arbitrary web scripts or HTML via an HTML e-email message.
Who is impacted by CVE-2013-0538?
Users of IBM Lotus Notes versions 8.x before 8.5.3 FP4 Interim Fix 1 and 9.0 before Interim Fix 1 are at risk.