Home

Description

The Domino Catalog template is susceptible to a Stored Cross-Site Scripting (XSS) vulnerability. An attacker with the ability to edit documents in the catalog application/database created from this template can embed a cross site scripting attack. The attack would be activated by an end user clicking it.

PUBLISHED Reserved 2023-07-06 | Published 2024-06-06 | Updated 2024-08-02 | Assigner HCL




HIGH: 8.4CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H

Product status

Default status
unaffected

11, 12, 14
affected

References

support.hcltechsw.com/...b_article&sysparm_article=KB0113715

support.hcltechsw.com/...b_article&sysparm_article=KB0113715

cve.org (CVE-2023-37539)

nvd.nist.gov (CVE-2023-37539)

Download JSON