6.1
CVSSv3

CVE-2022-27546

Published: 29/08/2022 Updated: 01/09/2022
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

HCL iNotes is susceptible to a Reflected Cross-site Scripting (XSS) vulnerability caused by improper validation of user-supplied input supplied with a form POST request. A remote attacker could exploit this vulnerability using a specially-crafted URL to execute script in a victim's web browser within the security context of the hosting web site and/or steal the victim's cookie-based authentication credentials.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hcltech hcl inotes 11.0.1

hcltech hcl inotes 10.0.1

hcltech hcl inotes 9.0.1

hcltech hcl inotes 10.0

hcltech hcl inotes 11.0

hcltech hcl inotes 12.0

hcltech hcl inotes 12.0.1

hcltech domino 10.0.1

hcltech domino 9.0.1

hcltech domino 11.0

hcltech domino 11.0.1

hcltech domino 9.0

hcltech domino 10.0

hcltech domino 12.0

hcltech domino 12.0.1