CVE-2013-0591: XSS
Cross-site scripting (XSS) vulnerability in iNotes 8.5.x in IBM Lotus Domino 8.5 before 8.5.3 FP5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, aka SPR PTHN95XNR3, a different vulnerability than CVE-2013-0590.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0591?
CVE-2013-0591 has a medium severity rating, as it allows remote authenticated users to exploit cross-site scripting vulnerabilities.
How do I fix CVE-2013-0591?
To fix CVE-2013-0591, upgrade to IBM Lotus Domino version 8.5.3 FP5 or later to mitigate the XSS vulnerability.
Who is affected by CVE-2013-0591?
CVE-2013-0591 affects users running IBM Lotus Domino versions 8.5.x prior to 8.5.3 FP5.
What types of attacks can exploit CVE-2013-0591?
Attackers can exploit CVE-2013-0591 to inject arbitrary web scripts or HTML into the pages viewed by other users.
Is authentication required to exploit CVE-2013-0591?
Yes, CVE-2013-0591 can only be exploited by remote authenticated users with access to the vulnerable iNotes.