CVE-2012-5307
IBM Lotus Notes Traveler <8.5.3.3 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in servlet/traveler in IBM Lotus Notes Traveler before 8.5.3.3 Interim Fix 1, when Firefox is used, allows remote attackers to inject arbitrary web script or HTML via the redirectURL parameter, a different vulnerability than CVE-2012-4824 and CVE-2012-4825.
Scores
EPSS
0.0020
EPSS Percentile
42.1%
Classification
CWE
CWE-79
Status
published
Affected Products (12)
ibm/lotus_notes_traveler
< 8.5.3.3
ibm/lotus_notes_traveler
ibm/lotus_notes_traveler
ibm/lotus_notes_traveler
ibm/lotus_notes_traveler
ibm/lotus_notes_traveler
ibm/lotus_notes_traveler
ibm/lotus_notes_traveler
ibm/lotus_notes_traveler
ibm/lotus_notes_traveler
ibm/lotus_notes_traveler
n/a/n/a
Timeline
Published
Oct 08, 2012
Tracked Since
Feb 18, 2026