CVE-2012-4825

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
8 October 2012

Summary

Multiple cross-site scripting (XSS) vulnerabilities in servlet/traveler/ILNT.mobileconfig in IBM Lotus Notes Traveler before 8.5.3.2 allow remote attackers to inject arbitrary web script or HTML via the (1) userId or (2) address parameter in a getClientConfigFile action.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.