CVE-2011-1106
IBM Lotus Sametime - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in stcenter.nsf in the server in IBM Lotus Sametime allows remote attackers to inject arbitrary web script or HTML via the authReasonCode parameter in an OpenDatabase action.
Exploits (1)
Scores
EPSS
0.0139
EPSS Percentile
80.2%
Classification
CWE
CWE-79
Status
published
Affected Products (4)
ibm/lotus_sametime
ibm/lotus_sametime
ibm/lotus_sametime
n/a/n/a
Timeline
Published
Mar 01, 2011
Tracked Since
Feb 18, 2026