HCL iNotes is susceptible to a Tabnabbing vulnerability caused by improper sanitization of message content. A remote unauthenticated attacker could use this vulnerability to trick the end user into entering sensitive information such as credentials, e.g. as part of a phishing attack.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
hcltech hcl inotes 10.0.1 |
||
hcltech hcl inotes 11.0.0 |
||
hcltechsw hcl inotes |
||
hcltechsw hcl inotes 9.0.1 |