CVE Vulnerabilities

CVE-2010-2279

Published: Jun 15, 2010 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.6 HIGH
AV:N/AC:H/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The Top Updates implementation in the Homepage component in IBM Lotus Connections 2.5.x before 2.5.0.2, when forced SSL is enabled, uses http for links, which has unspecified impact and remote attack vectors.

Affected Software

NameVendorStart VersionEnd Version
Lotus_connectionsIbm2.5.0 (including)2.5.0 (including)
Lotus_connectionsIbm2.5.0.1 (including)2.5.0.1 (including)

References