Microsoft Updates for Multiple Vulnerabilities

  • CERT Admin
  • Tue Nov 03 2020
  • Alerts

Overview

IBM iNotes has four cross-site scripting vulnerabilities. Two of the vulnerabilities share the same CVE ID (CVE-2013-0595). These vulnerabilities could allow a remote unauthenticated attacker to expose user personal data.


Description

A remote unauthenticated attacker could exploit a security vulnerability in IBM iNotes to expose user personal data.


Impact

✻ Access Confidential Data - Remote/Unauthenticated


Solution/ Workarounds

All three of these issues are being tracked through SPR #PTHN95XNR3. The fix is available in IBM Domino release 8.5.3 Fix Pack 5, which can be accessed here .


References

✻ http://www-01.ibm.com/support/docview.wss?uid=swg21647740


Disclaimer

The information provided herein is on "as is" basis, without warranty of any kind.

Last updated: Tue Nov 03 2020