Cross-site scripting (XSS) vulnerability in Lotus Quickr for i5/OS before 8.0.0.2 Hotfix 11, when anonymous access is disabled on HTTP ports, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
| Software | From | Fixed in |
|---|---|---|
| ibm / lotus_quickr | 8.0.2 | 8.0.2.x |
| ibm / lotus_quickr | 8.0 | 8.0.x |