296,172
Total vulnerabilities in the database
HCL iNotes v9, v10 and v11 is susceptible to a Stored Cross-Site Scripting (XSS) vulnerability due to improper handling of message content. An unauthenticated remote attacker could exploit this vulnerability using specially-crafted markup to execute script in a victim's web browser within the security context of the hosting Web site and/or steal the victim's cookie-based authentication credentials.
Software | From | Fixed in |
---|---|---|
hcltech / hcl_inotes | 10.0.1-fixpack1 | 10.0.1-fixpack1.x |
hcltech / hcl_inotes | 10.0.1-fixpack2 | 10.0.1-fixpack2.x |
hcltech / hcl_inotes | 10.0.1-fixpack3 | 10.0.1-fixpack3.x |
hcltech / hcl_inotes | 10.0.1-fixpack4 | 10.0.1-fixpack4.x |
hcltech / hcl_inotes | 10.0.1-fixpack5 | 10.0.1-fixpack5.x |
hcltech / hcl_inotes | 11.0.0 | 11.0.1 |
hcltech / hcl_inotes | 11.0.1-fixpack1 | 11.0.1-fixpack1.x |
hcltech / hcl_inotes | 11.0.1 | 11.0.1.x |
hcltech / hcl_inotes | 10.0.1 | 10.0.1.x |
hcltech / hcl_inotes | 9.0 | 10.0.1 |