Cross-site scripting (XSS) vulnerability in IBM Lotus Domino 8.5.2 allows remote attackers to inject arbitrary web script or HTML via the PanelIcon parameter in an fmpgPanelHeader ReadForm action to WebAdmin.nsf.
References
Configurations
Information
Published : 2011-09-19 05:02
Updated : 2011-09-22 20:34
NVD link : CVE-2011-3576
Mitre link : CVE-2011-3576
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
ibm
- lotus_domino