CVE Vulnerabilities

CVE-2010-2279

Published: Jun 15, 2010 | Modified: Jun 16, 2010
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.6 HIGH
AV:N/AC:H/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The Top Updates implementation in the Homepage component in IBM Lotus Connections 2.5.x before 2.5.0.2, when forced SSL is enabled, uses http for links, which has unspecified impact and remote attack vectors.

Affected Software

Name Vendor Start Version End Version
Lotus_connections Ibm 2.5.0 (including) 2.5.0 (including)
Lotus_connections Ibm 2.5.0.1 (including) 2.5.0.1 (including)

References