The web interface for Lotus Notes mail automatically processes HTML in an attachment without prompting the user to save or open it, which makes it easier for remote attackers to conduct web-based attacks and steal cookies.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2005-07/0075.html | Vendor Advisory |
http://securitytracker.com/id?1014440 |
Configurations
Information
Published : 2005-07-08 21:00
Updated : 2008-09-05 13:51
NVD link : CVE-2005-2175
Mitre link : CVE-2005-2175
JSON object : View
CWE
Products Affected
ibm
- lotus_notes