The RSS reader widget in IBM Lotus Notes 8.0 and 8.5 saves items from an RSS feed as local HTML documents, which allows remote attackers to execute arbitrary script in Internet Explorer's Local Machine Zone via a crafted feed, aka SPR RGAU7RDJ9K.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2009-09-09T22:00:00

Updated: 2024-08-07T06:14:56.061Z

Reserved: 2009-09-09T00:00:00

Link: CVE-2009-3114

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2009-09-09T22:30:00.233

Modified: 2018-10-10T19:43:11.847

Link: CVE-2009-3114

cve-icon Redhat

No data.