CVE Published: 08/10/2012 |
CVE Updated: 16/09/2024 |
CVE Year: 2012 Source: ibm |
Vendor: n/a |
Product: n/a Status : PUBLISHED
CVE-2012-4825 Description
Multiple cross-site scripting (XSS) vulnerabilities in servlet/traveler/ILNT.mobileconfig in IBM Lotus Notes Traveler before 8.5.3.2 allow remote attackers to inject arbitrary web script or HTML via the (1) userId or (2) address parameter in a getClientConfigFile action.