Page 2 of 7 results (0.002 seconds)

CVSS: 7.5EPSS: 4%CPEs: 1EXPL: 0

Cross-site scripting (CSS) vulnerability in Lotus Domino 5.0.6 allows remote attackers to execute script on other web clients via a URL that ends in Javascript, which generates an error message that does not quote the resulting script. • http://www.iss.net/security_center/static/6789.php http://www.kb.cert.org/vuls/id/642239 http://www.osvdb.org/1887 http://www.securityfocus.com/archive/1/194465 http://www.securityfocus.com/archive/1/194609 http://www.securityfocus.com/bid/2962 •

CVSS: 10.0EPSS: 0%CPEs: 5EXPL: 0

Buffer overflow in HTML parser of the Lotus R5 Domino Server before 5.06, and Domino Client before 5.05, allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a malformed font size specifier. • http://service1.symantec.com/sarc/sarc.nsf/info/html/Lotus.Domino.Denial.of.Service.Malformed.HTML.Email.html https://exchange.xforce.ibmcloud.com/vulnerabilities/6207 •