CVE-2008-2163

Cross-site scripting (XSS) vulnerability in IBM Lotus Quickr 8.1 before Hotfix 5 for Windows and AIX, and before Hotfix 3 for i5/OS, allows remote attackers to inject arbitrary web script or HTML via unknown vectors related to "WYSIWYG editors."
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:ibm:aix:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i5os:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:lotus_quickr:8.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-05-13 17:20

Updated : 2024-02-04 17:33


NVD link : CVE-2008-2163

Mitre link : CVE-2008-2163

CVE.ORG link : CVE-2008-2163


JSON object : View

Products Affected

ibm

  • i5os
  • lotus_quickr
  • aix

microsoft

  • windows_nt
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')