Skip to main content

Vendor/product archive

ibm / lotus_domino CVEs

Beta · best-effort

106 CVEs tagged to ibm / lotus_domino28 Critical, 16 High, 46 Medium, 16 Low, 0 Unrated.

CVE-2014-0913

Published May 9, 2014

Cross-site scripting (XSS) vulnerability in IBM iNotes and Domino 8.5.3 FP6 before IF2 and 9.0.1 before FP1 allows remote attackers to inject arbitrary web script or HTML via an e…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0822

Published Feb 6, 2014

The IMAP server in IBM Domino 8.5.x before 8.5.3 FP6 IF1 and 9.0.x before 9.0.1 FP1 allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors, ak…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-4065

Published Dec 21, 2013

Cross-site scripting (XSS) vulnerability in iNotes in IBM Domino 8.5.x before 8.5.3 FP6 and 9.0.x before 9.0.1, when ultra-light mode is enabled, allows remote attackers to inject…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-4064

Published Dec 21, 2013

Cross-site scripting (XSS) vulnerability in iNotes in IBM Domino 8.5.x before 8.5.3 FP6 and 9.0.x before 9.0.1, when ultra-light mode is enabled, allows remote authenticated users…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-4063

Published Dec 21, 2013

Cross-site scripting (XSS) vulnerability in iNotes in IBM Domino 8.5.x before 8.5.3 FP6 and 9.0.x before 9.0.1 allows remote attackers to inject arbitrary web script or HTML via a…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4055

Published Nov 8, 2013

Cross-site scripting (XSS) vulnerability in webadmin.nsf in Domino Web Administrator in IBM Domino 8.5 and 9.0 allows remote authenticated users to inject arbitrary web script or…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-4051

Published Nov 8, 2013

Cross-site scripting (XSS) vulnerability in webadmin.nsf in Domino Web Administrator in IBM Domino 8.5 and 9.0 allows remote authenticated users to inject arbitrary web script or…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-4050

Published Nov 8, 2013

Cross-site request forgery (CSRF) vulnerability in webadmin.nsf in Domino Web Administrator in IBM Domino 8.5 and 9.0 allows remote authenticated users to hijack the authenticatio…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-5389

Published Oct 22, 2013

Cross-site scripting (XSS) vulnerability in iNotes in IBM Domino 8.5.3 before FP5 IF2 and 9.0 before IF5 allows remote attackers to inject arbitrary web script or HTML via unspeci…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-5388

Published Oct 22, 2013

Cross-site scripting (XSS) vulnerability in iNotes in IBM Domino 8.5.3 before FP5 IF2 and 9.0 before IF5 allows remote attackers to inject arbitrary web script or HTML via unspeci…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4068

Published Sep 20, 2013

Buffer overflow in iNotes in IBM Domino 8.5.3 before FP5 IF1 and 9.0 before IF4 allows remote authenticated users to execute arbitrary code via unspecified vectors, aka SPR PTHN9A…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2013-0595

Published Aug 27, 2013

Multiple cross-site scripting (XSS) vulnerabilities in iNotes 8.5.x in IBM Lotus Domino 8.5 before 8.5.3 FP5 allow remote attackers to inject arbitrary web script or HTML via unsp…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0591

Published Aug 27, 2013

Cross-site scripting (XSS) vulnerability in iNotes 8.5.x in IBM Lotus Domino 8.5 before 8.5.3 FP5 allows remote authenticated users to inject arbitrary web script or HTML via unsp…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-0590

Published Aug 27, 2013

Cross-site scripting (XSS) vulnerability in iNotes 8.5.x in IBM Lotus Domino 8.5 before 8.5.3 FP5 allows remote authenticated users to inject arbitrary web script or HTML via unsp…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-3990

Published Aug 9, 2013

Cross-site scripting (XSS) vulnerability in the MIME e-mail functionality in iNotes in IBM Domino 9.0 before IF3 allows remote attackers to inject arbitrary web script or HTML via…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-3032

Published Aug 9, 2013

Cross-site scripting (XSS) vulnerability in the MIME e-mail functionality in iNotes in IBM Domino 9.0 before IF3 allows remote attackers to inject arbitrary web script or HTML via…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-3027

Published Aug 9, 2013

Integer overflow in the DWA9W ActiveX control in iNotes in IBM Domino 9.0 before IF3 allows remote attackers to execute arbitrary code via a crafted web page, aka SPR PTHN97XHFW.

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-0489

Published Mar 27, 2013

Cross-site request forgery (CSRF) vulnerability in webadmin.nsf (aka the Web Administrator client) in IBM Domino 8.5.x allows remote authenticated users to hijack the authenticati…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0488

Published Mar 27, 2013

Cross-site scripting (XSS) vulnerability in webadmin.nsf (aka the Web Administrator client) in IBM Domino 8.5.x allows remote attackers to inject arbitrary web script or HTML via…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0487

Published Mar 27, 2013

The Java Console in IBM Domino 8.5.x allows remote authenticated users to hijack temporary credentials by leveraging knowledge of configuration details, aka SPR KLYH8TNNDN.

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2013-0486

Published Mar 27, 2013

Memory leak in the HTTP server in IBM Domino 8.5.x allows remote attackers to cause a denial of service (memory consumption and daemon crash) via GET requests, aka SPR KLYH92NKZY.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4844

Published Feb 27, 2013

Cross-site scripting (XSS) vulnerability in the web server in IBM Lotus Domino 8.5.x through 8.5.3 allows remote attackers to inject arbitrary web script or HTML via unspecified v…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4842

Published Feb 27, 2013

Open redirect vulnerability in the web server in IBM Lotus Domino 8.5.x through 8.5.3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 106 CVEsPage 1 of 5