IBM Lotus Domino XSS and Buffer Overflow Vulnerabilities

0

Author: Dave Lewis

From Secunia:

Description:

Some vulnerabilities have been reported in IBM Lotus Domino and Lotus Domino Web Access, which can be exploited by malicious people to conduct cross-site scripting attacks or cause a DoS (Denial of Service).

1) An unspecified error within the IMAP service can be exploited to cause a buffer overflow and crash the server.

2) An unspecified error within the LDAP server when handling certain requests can be exploited to cause a buffer overflow and crash the server.

3) Certain input within Lotus Domino Web Access is not properly sanitised before being returned to the user. This can be exploited to execute arbitrary HTML and script code in a user’s browser session in context of an affected site.

Article Link

Tags: , , ,

Tag It:
  • Digg
  • del.icio.us
  • Slashdot
  • Technorati
  • SphereIt
  • StumbleUpon
  • NewsVine
  • LinkedIn
  • TwitThis
  • Facebook
  • Live

Speak Your Mind

Tell us what you're thinking...
and oh, if you want a pic to show with your comment, go get a gravatar!