Ibm Lotus Web Content Management vulnerabilities

3 known vulnerabilities affecting ibm/lotus_web_content_management.

Total CVEs
3
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2010-0714MEDIUMCVSS 4.3PoCv5.1.0.0v5.1.0.1+22 more2010-02-26
CVE-2010-0714 [MEDIUM] CWE-79 CVE-2010-0714: Cross-site scripting (XSS) vulnerability in login.jsp in IBM WebSphere Portal, IBM Lotus Web Content Cross-site scripting (XSS) vulnerability in login.jsp in IBM WebSphere Portal, IBM Lotus Web Content Management (WCM), and IBM Lotus Workplace Web Content Management 5.1.0.0 through 5.1.0.5, 6.0.0.0 through 6.0.0.4, 6.0.1.0 through 6.0.1.7, 6.1.0.0 through 6.1.0.3, and 6.1.5.0; and IBM Lotus Quickr services 8.0, 8.0.0.2, 8.1, 8.1.1, and 8.1.1.1 for Web
nvd
CVE-2010-0715MEDIUMCVSS 6.8v5.1.0.0v5.1.0.1+22 more2010-02-26
CVE-2010-0715 [MEDIUM] CVE-2010-0715: Open redirect vulnerability in login.jsp in IBM WebSphere Portal, IBM Lotus Web Content Management ( Open redirect vulnerability in login.jsp in IBM WebSphere Portal, IBM Lotus Web Content Management (WCM), and IBM Lotus Workplace Web Content Management 5.1.0.0 through 5.1.0.5, 6.0.0.0 through 6.0.0.4, 6.0.1.0 through 6.0.1.7, 6.1.0.0 through 6.1.0.3, and 6.1.5.0; and IBM Lotus Quickr services 8.0, 8.0.0.2, 8.1, 8.1.1, and 8.1.1.1 for WebSphere Portal; allow
nvd
CVE-2010-0357MEDIUMCVSS 4.3v6.0.1.4v6.0.1.5+3 more2010-01-20
CVE-2010-0357 [MEDIUM] CWE-79 CVE-2010-0357: Cross-site scripting (XSS) vulnerability in the Login page in IBM Lotus Web Content Management (WCM) Cross-site scripting (XSS) vulnerability in the Login page in IBM Lotus Web Content Management (WCM) 6.0.1.4, 6.0.1.5, and 6.0.1.6 before iFix 32; and 6.1.0.1 and 6.1.0.2 before iFix 24; for WebSphere Portal allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.
nvd