CVE-2010-0275

3 documents3 sources
Severity
10.0CRITICAL
EPSS
0.5%
top 32.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 9
Latest updateMay 2

Description

Ultra-light Mode in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.241 for Domino 8.0.2 FP3 does not properly handle script commands in the status-alerts URL, which has unspecified impact and attack vectors, aka SPR LSHR7TBM58.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages1 packages

NVDibm/lotus_inotes229.231+18

🔴Vulnerability Details

2
GHSA
GHSA-jvxj-m6p9-r354: Ultra-light Mode in IBM Lotus iNotes (aka Domino Web Access or DWA) before 2292022-05-02
CVEList
CVE-2010-0275: Ultra-light Mode in IBM Lotus iNotes (aka Domino Web Access or DWA) before 2292010-01-09
CVE-2010-0275 (CRITICAL CVSS 10) | Ultra-light Mode in IBM Lotus iNote | cvebase.io