CVE-2010-0920
 
Severity Score
4.3
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Cross-site scripting (XSS) vulnerability in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.281 for Domino 8.0.2 FP4 allows remote attackers to inject arbitrary web script or HTML via vectors related to lack of "XSS/CSRF Get Filter and Referer Check fixes."
Vulnerabilidad de secuencias de comandos en sitios cruzados (XSS) en IBM Lotus iNotes (alias Domino Web Access o DWA) en versiones anteriores a la 229.281 para Domino 8.0.2 FP4 permite a atacantes remotos inyectar secuencias de comandos web o HTML de su elección mediante vectores relacionado con la falta de "XSS/CSRF Get Filter and Referer Check fixes."
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2010-03-03 CVE Reserved
- 2010-03-03 CVE Published
- 2024-09-16 CVE Updated
- 2024-09-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/38459 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg27018109 | 2010-03-04 | |
http://www.vupen.com/english/advisories/2010/0496 | 2010-03-04 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | <= 229.271 Search vendor "Ibm" for product "Lotus Inotes" and version " <= 229.271" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.011 Search vendor "Ibm" for product "Lotus Inotes" and version "229.011" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.021 Search vendor "Ibm" for product "Lotus Inotes" and version "229.021" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.031 Search vendor "Ibm" for product "Lotus Inotes" and version "229.031" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.041 Search vendor "Ibm" for product "Lotus Inotes" and version "229.041" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.051 Search vendor "Ibm" for product "Lotus Inotes" and version "229.051" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.061 Search vendor "Ibm" for product "Lotus Inotes" and version "229.061" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.101 Search vendor "Ibm" for product "Lotus Inotes" and version "229.101" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.111 Search vendor "Ibm" for product "Lotus Inotes" and version "229.111" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.131 Search vendor "Ibm" for product "Lotus Inotes" and version "229.131" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.141 Search vendor "Ibm" for product "Lotus Inotes" and version "229.141" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.151 Search vendor "Ibm" for product "Lotus Inotes" and version "229.151" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.161 Search vendor "Ibm" for product "Lotus Inotes" and version "229.161" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.171 Search vendor "Ibm" for product "Lotus Inotes" and version "229.171" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.181 Search vendor "Ibm" for product "Lotus Inotes" and version "229.181" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.191 Search vendor "Ibm" for product "Lotus Inotes" and version "229.191" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.201 Search vendor "Ibm" for product "Lotus Inotes" and version "229.201" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.211 Search vendor "Ibm" for product "Lotus Inotes" and version "229.211" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.221 Search vendor "Ibm" for product "Lotus Inotes" and version "229.221" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.231 Search vendor "Ibm" for product "Lotus Inotes" and version "229.231" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.241 Search vendor "Ibm" for product "Lotus Inotes" and version "229.241" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.251 Search vendor "Ibm" for product "Lotus Inotes" and version "229.251" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|
Ibm Search vendor "Ibm" | Lotus Inotes Search vendor "Ibm" for product "Lotus Inotes" | 229.261 Search vendor "Ibm" for product "Lotus Inotes" and version "229.261" | - |
Affected
| in | Ibm Search vendor "Ibm" | Lotus Domino Search vendor "Ibm" for product "Lotus Domino" | 8.0.2.4 Search vendor "Ibm" for product "Lotus Domino" and version "8.0.2.4" | - |
Safe
|