Multiple cross-site scripting (XSS) vulnerabilities in IBM Lotus Connections 2.5.x prior to 2.5.0.2 allow remote malicious users to inject arbitrary web script or HTML via the (1) create or (2) edit form in the Communities component, the (3) verbiage field in the Bookmarks component, or (4) unspecified vectors related to the Mobile Blogs component.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ibm lotus connections 2.5.0.1 |
||
ibm lotus connections 2.5.0 |