Description
IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Affected products
- IBM Corporation / Domino8.5.3.5 – 8.5.3.5
- IBM Corporation / Domino8.5.3.6 – 8.5.3.6
- IBM Corporation / Domino9.0.1 – 9.0.1
- IBM Corporation / Domino8.5 – 8.5
- IBM Corporation / Domino9.0 – 9.0
- IBM Corporation / Domino8.5.1 – 8.5.1
- IBM Corporation / Domino8.5.2 – 8.5.2
- IBM Corporation / Domino8.5.3 – 8.5.3
- IBM Corporation / Domino9.0.1.1 – 9.0.1.1
- IBM Corporation / Domino8.0.2 – 8.0.2
- IBM Corporation / Domino8.0 – 8.0
- IBM Corporation / Domino8.0.1 – 8.0.1
- IBM Corporation / Domino8.5.1.5 – 8.5.1.5
- IBM Corporation / Domino8.5.2.4 – 8.5.2.4
- IBM Corporation / Domino9.0.1.2 – 9.0.1.2
- IBM Corporation / Domino8.5.0.1 – 8.5.0.1
- IBM Corporation / Domino9.0.1.3 – 9.0.1.3
- IBM Corporation / Domino8.5.1.4 – 8.5.1.4
- IBM Corporation / Domino9.0.1.4 – 9.0.1.4
- IBM Corporation / Domino9.0.1.5 – 9.0.1.5
- IBM Corporation / Domino8.5.1.1 – 8.5.1.1
- IBM Corporation / Domino9.0.1.6 – 9.0.1.6
- IBM Corporation / Domino9.0.1.7 – 9.0.1.7