HCL iNotes is susceptible to a Tabnabbing vulnerability caused by improper sanitization of message content. A remote unauthenticated attacker could use this vulnerability to trick the end user into entering sensitive information such as credentials, e.g. as part of a phishing attack.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Hcl_inotes | Hcltech | 10.0.1 (including) | 10.0.1 (including) |
Hcl_inotes | Hcltech | 10.0.1-fixpack1 (including) | 10.0.1-fixpack1 (including) |
Hcl_inotes | Hcltech | 10.0.1-fixpack2 (including) | 10.0.1-fixpack2 (including) |
Hcl_inotes | Hcltech | 10.0.1-fixpack3 (including) | 10.0.1-fixpack3 (including) |
Hcl_inotes | Hcltech | 10.0.1-fixpack4 (including) | 10.0.1-fixpack4 (including) |
Hcl_inotes | Hcltech | 11.0.0 (including) | 11.0.0 (including) |
Hcl_inotes | Hcltechsw | * | 9.0.1 (excluding) |
Hcl_inotes | Hcltechsw | 9.0.1-fixpack_8 (including) | 9.0.1-fixpack_8 (including) |
Hcl_inotes | Hcltechsw | 9.0.1-fixpack_9 (including) | 9.0.1-fixpack_9 (including) |
Hcl_inotes | Hcltechsw | 9.0.1-fixpack_9_interim_fix_1 (including) | 9.0.1-fixpack_9_interim_fix_1 (including) |