CVE-2010-2277
N/A
N/A
Summary
Multiple cross-site scripting (XSS) vulnerabilities in IBM Lotus Connections 2.5.x before 2.5.0.2 allow remote attackers to inject arbitrary web script or HTML via the (1) create or (2) edit form in the Communities component, the (3) verbiage field in the Bookmarks component, or (4) unspecified vectors related to the Mobile Blogs component.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.vupen.com/english/advisories/2010/1281
- http://www-1.ibm.com/support/docview.wss?uid=swg1LO47921
- http://www-1.ibm.com/support/docview.wss?uid=swg1LO47214
- http://www-1.ibm.com/support/docview.wss?uid=swg1LO47362
- http://secunia.com/advisories/40007
- http://www-01.ibm.com/support/docview.wss?uid=swg21431472
References
- http://www.vupen.com/english/advisories/2010/1281
- http://www-1.ibm.com/support/docview.wss?uid=swg1LO47921
- http://www-1.ibm.com/support/docview.wss?uid=swg1LO47214
- http://www-1.ibm.com/support/docview.wss?uid=swg1LO47362
- http://secunia.com/advisories/40007
- http://www-01.ibm.com/support/docview.wss?uid=swg21431472
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.