First published: Fri Nov 08 2013(Updated: )
Cross-site scripting (XSS) vulnerability in webadmin.nsf in Domino Web Administrator in IBM Domino 8.5 and 9.0 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2013-4051.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Lotus Domino | =8.5.0 | |
IBM Lotus Domino | =9.0.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-4055 is considered a medium severity vulnerability due to its potential for exploitation via cross-site scripting.
To fix CVE-2013-4055, you should apply the latest security patches provided by IBM for Lotus Domino versions 8.5 and 9.0.
CVE-2013-4055 allows attackers to inject arbitrary web script or HTML, which can facilitate phishing attacks and session hijacking.
Remote authenticated users of IBM Lotus Domino versions 8.5 and 9.0 are affected by CVE-2013-4055.
Yes, CVE-2013-4055 is a different vulnerability than CVE-2013-4051, which also affects IBM Domino software.