Vulnerabilities > CVE-2006-0662 - HTML and Script Injection vulnerability in IBM Lotus Domino Inotes Client 6.5.4
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
NONE Integrity impact
PARTIAL Availability impact
NONE network
ibm
Summary
Cross-site scripting (XSS) vulnerability in Lotus Domino iNotes Client 6.5.4 allows remote attackers to inject arbitrary web script or HTML via email with attached html files, which are directly rendered in the browser.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://secunia.com/advisories/16340
- http://secunia.com/secunia_research/2005-38/advisory/
- http://securitytracker.com/id?1015610
- http://www.osvdb.org/23077
- http://www.securityfocus.com/bid/16577
- http://www.vupen.com/english/advisories/2006/0499
- http://www-1.ibm.com/support/docview.wss?rs=475&uid=swg21229919
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24612