Back
CVE-2001-1161
Cross-site scripting (CSS) vulnerability in Lotus Domino 5.0.6 allows remote attackers to execute script on other web clients via a URL that ends in Javascript, which generates an error message that does not quote the resulting script.
Published: Jul 2, 2001
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| lotus | domino_r5_server | 5.0.6 |
GitHub Security Advisory GHSA-4w5m-vg96-g85c
Cross-site scripting (CSS) vulnerability in Lotus Domino 5.0.6 allows remote attackers to execute...
References (12)
- http://www.iss.net/security_center/static/6789.php Patch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/642239 Third Party Advisory, US Government Resource
- http://www.osvdb.org/1887
- http://www.securityfocus.com/archive/1/194465 Vendor Advisory
- http://www.securityfocus.com/archive/1/194609
- http://www.securityfocus.com/bid/2962 Vendor Advisory
- http://www.iss.net/security_center/static/6789.php Patch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/642239 Third Party Advisory, US Government Resource
- http://www.osvdb.org/1887
- http://www.securityfocus.com/archive/1/194465 Vendor Advisory
- http://www.securityfocus.com/archive/1/194609
- http://www.securityfocus.com/bid/2962 Vendor Advisory
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
3.64%
Top 12% most likely to be exploited
Threat Score
31.1 / 100
Data Sources
NVD
EPSS
GitHub