// For flags

CVE-2020-14240

 

Severity Score

6.1
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

HCL Notes versions previous to releases 9.0.1 FP10 IF8, 10.0.1 FP6 and 11.0.1 FP1 is susceptible to a Stored Cross-site Scripting (XSS) vulnerability. An attacker could use this vulnerability to execute script in a victim's Web browser within the security context of the hosting Web site and/or steal the victim's cookie-based authentication credentials.

HCL Notes versiones anteriores a 9.0.1 FP10 IF8, 10.0.1 FP6 y 11.0.1 FP1, son susceptibles a una vulnerabilidad de tipo Cross-site Scripting (XSS) almacenado. Un atacante podría usar esta vulnerabilidad para ejecutar un script en el navegador Web de la víctima dentro del contexto de seguridad del sitio Web de alojamiento y/o robar unas credenciales de autenticación basadas en cookies de la víctima

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Changed
Confidentiality
Low
Integrity
Low
Availability
None
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
None
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2020-06-17 CVE Reserved
  • 2020-11-05 CVE Published
  • 2023-07-22 EPSS Updated
  • 2024-08-04 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
>= 9.0 <= 9.0.1
Search vendor "Hcltech" for product "Notes" and version " >= 9.0 <= 9.0.1"
-
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
>= 10.0 <= 10.0.1
Search vendor "Hcltech" for product "Notes" and version " >= 10.0 <= 10.0.1"
-
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
>= 11.0 <= 11.0.1
Search vendor "Hcltech" for product "Notes" and version " >= 11.0 <= 11.0.1"
-
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp10
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp10if1
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp10if2
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp10if3
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp10if4
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp10if5
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp10if6
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp10if7
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp1if1
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp1if2
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp2if1
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp2if2
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp2if3
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp2if4
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp3if1
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp3if2
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp3if3
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp3if4
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp4if1
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp4if2
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp5if1
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp5if2
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp5if3
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp7if1
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp7if2
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp8if1
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp9if1
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
9.0.1
Search vendor "Hcltech" for product "Notes" and version "9.0.1"
fp9if2
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
10.0.1
Search vendor "Hcltech" for product "Notes" and version "10.0.1"
fp1
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
10.0.1
Search vendor "Hcltech" for product "Notes" and version "10.0.1"
fp2
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
10.0.1
Search vendor "Hcltech" for product "Notes" and version "10.0.1"
fp3
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
10.0.1
Search vendor "Hcltech" for product "Notes" and version "10.0.1"
fp4
Affected
Hcltech
Search vendor "Hcltech"
Notes
Search vendor "Hcltech" for product "Notes"
10.0.1
Search vendor "Hcltech" for product "Notes" and version "10.0.1"
fp5
Affected