Vulnerabilities > IBM > I5Os

DATE CVE VULNERABILITY TITLE RISK
2008-08-29 CVE-2008-3860 Cross-Site Scripting vulnerability in IBM Lotus Quickr 8.1
Multiple cross-site scripting (XSS) vulnerabilities (1) in the WYSIWYG editors, (2) during local group creation, (3) during HTML redirects, (4) in the HTML import, (5) in the Rich text editor, and (6) in link-page in IBM Lotus Quickr 8.1 services for Lotus Domino before Hotfix 15 allow remote attackers to inject arbitrary web script or HTML via unknown vectors, including (7) the Imported Page.
network
ibm microsoft CWE-79
4.3
2008-05-13 CVE-2008-2163 Cross-Site Scripting vulnerability in IBM Lotus Quickr 8.1
Cross-site scripting (XSS) vulnerability in IBM Lotus Quickr 8.1 before Hotfix 5 for Windows and AIX, and before Hotfix 3 for i5/OS, allows remote attackers to inject arbitrary web script or HTML via unknown vectors related to "WYSIWYG editors."
network
ibm microsoft CWE-79
4.3
2007-04-11 CVE-2007-1945 Unspecified vulnerability in IBM Websphere Application Server
Unspecified vulnerability in the Servlet Engine/Web Container in IBM WebSphere Application Server (WAS) before 6.1.0.7 has unknown impact and attack vectors.
network
low complexity
hp ibm linux microsoft sun
7.5