Security Advisory

CVE-2012-3302

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2012-08-21 10:00:00
Last updated 2024-08-06 19:57:50
Assigner ibm
State PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in IBM Lotus Domino 7.x and 8.x before 8.5.4 allow remote attackers to inject arbitrary web script or HTML via (1) a URL accessed during use of the Mail template in the WebMail UI or (2) a URL accessed during use of Domino Help through the Domino HTTP server.