CVE-2013-4065
Published Dec 21, 2013
Last updated 7 years ago
Overview
- Description
- Cross-site scripting (XSS) vulnerability in iNotes in IBM Domino 8.5.x before 8.5.3 FP6 and 9.0.x before 9.0.1, when ultra-light mode is enabled, allows remote attackers to inject arbitrary web script or HTML via active content in an e-mail message, aka SPR TCLE98ZKRP.
- Source
- psirt@us.ibm.com
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 2.6
- Impact score
- 2.9
- Exploitability score
- 4.9
- Vector string
- AV:N/AC:H/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-79
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:lotus_domino:8.5.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "350ACC22-669F-4429-A525-36F56EF9678C" }, { "criteria": "cpe:2.3:a:ibm:lotus_domino:8.5.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3C068055-FB7A-4AFB-AF29-28238ECF126F" }, { "criteria": "cpe:2.3:a:ibm:lotus_domino:8.5.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1ACB4B2C-CCE1-4A0A-B962-B8C208869589" }, { "criteria": "cpe:2.3:a:ibm:lotus_domino:8.5.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BC1A8676-B2CA-49FF-A43E-EAC62170BF82" }, { "criteria": "cpe:2.3:a:ibm:lotus_domino:8.5.3.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "71ADC0C5-36E9-426E-B302-56804B1800BB" }, { "criteria": "cpe:2.3:a:ibm:lotus_domino:8.5.3.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "24863689-9472-4C56-B3A8-3053494437C1" }, { "criteria": "cpe:2.3:a:ibm:lotus_domino:9.0.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7025B610-6988-4A78-B0ED-6FB728AA6C28" }, { "criteria": "cpe:2.3:a:ibm:lotus_inotes:8.5.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "76D0D493-1BFD-4054-BDB0-F338BFAFDC5F" }, { "criteria": "cpe:2.3:a:ibm:lotus_inotes:8.5.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F088F719-F4BE-4B49-B022-96D43664155B" }, { "criteria": "cpe:2.3:a:ibm:lotus_inotes:8.5.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B7F797B7-C3EA-4A12-8D69-217FBD4B9EB1" }, { "criteria": "cpe:2.3:a:ibm:lotus_inotes:8.5.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AFCA4DA1-302C-42AD-9317-DC733A17696B" }, { "criteria": "cpe:2.3:a:ibm:lotus_inotes:8.5.3.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B102407C-3CCE-45A5-A3A2-9C24D5F4866A" }, { "criteria": "cpe:2.3:a:ibm:lotus_inotes:8.5.3.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "577AA3FA-31BA-429C-8CE6-B3776F5CF857" }, { "criteria": "cpe:2.3:a:ibm:lotus_inotes:9.0.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F9B79C2F-8633-47A2-ADB5-FEB0EEB10B90" } ], "operator": "OR" } ] } ]