Ibm Domino vulnerabilities
27 known vulnerabilities affecting ibm/domino.
Total CVEs
27
CISA KEV
0
Public exploits
2
Exploited in wild
1
Severity breakdown
CRITICAL6HIGH11MEDIUM9LOW1
Vulnerabilities
Page 2 of 2
CVE-2016-6113P4MEDIUMCVSS 6.1v8.5.1.0v8.5.1.1+24 more2017-02-01
CVE-2016-6113 [MEDIUM] CWE-79 CVE-2016-6113: IBM Verse is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary
IBM Verse is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
nvd
CVE-2016-5882P4MEDIUMCVSS 6.1v8.5.1.0v8.5.1.1+24 more2017-02-01
CVE-2016-5882 [MEDIUM] CWE-79 CVE-2016-5882: IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary
IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
nvd
CVE-2016-5884P4MEDIUMCVSS 6.1v8.5.1.0v8.5.1.1+24 more2017-02-01
CVE-2016-5884 [MEDIUM] CWE-79 CVE-2016-5884: IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary
IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
nvd
CVE-2016-5880P4MEDIUMCVSS 5.4v8.5.1.0v8.5.1.1+24 more2017-02-01
CVE-2016-5880 [MEDIUM] CWE-79 CVE-2016-5880: IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary
IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
nvd
CVE-2015-2014P4MEDIUMCVSS 5.8v8.5.0v8.5.1+3 more2015-08-23
CVE-2015-2014 [MEDIUM] CVE-2015-2014: Open redirect vulnerability in the web server in IBM Domino 8.5 before 8.5.3 FP6 IF9 and 9.0 before
Open redirect vulnerability in the web server in IBM Domino 8.5 before 8.5.3 FP6 IF9 and 9.0 before 9.0.1 FP4 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks or cross-site scripting (XSS) attacks via a crafted URL, aka SPR SJAR9DNGDA.
nvd
CVE-2015-2015P4MEDIUMCVSS 4.3≤ 8.5.32015-08-23
CVE-2015-2015 [MEDIUM] CWE-79 CVE-2015-2015: Cross-site scripting (XSS) vulnerability in pubnames.ntf (aka the Directory template) in the web ser
Cross-site scripting (XSS) vulnerability in pubnames.ntf (aka the Directory template) in the web server in IBM Domino before 9.0.0 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka SPR KLYH8WBPRN.
nvd
CVE-2015-1981P4LOWCVSS 2.1v8.5.0v8.5.1+3 more2015-06-28
CVE-2015-1981 [LOW] CWE-79 CVE-2015-1981: Cross-site scripting (XSS) vulnerability in the web server in IBM Domino 8.5.x before 8.5.3 FP6 IF8
Cross-site scripting (XSS) vulnerability in the web server in IBM Domino 8.5.x before 8.5.3 FP6 IF8 and 9.x before 9.0.1 FP4, when Webmail is enabled, allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, aka SPR KLYH9WYPR5.
nvd
← Previous2 / 2