Vulnerability Details CVE-2010-2279
The Top Updates implementation in the Homepage component in IBM Lotus Connections 2.5.x before 2.5.0.2, when "forced SSL" is enabled, uses http for links, which has unspecified impact and remote attack vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 64.3%
CVSS Severity
CVSS v2 Score 7.6
Products affected by CVE-2010-2279
-
cpe:2.3:a:ibm:lotus_connections:2.5.0
-
cpe:2.3:a:ibm:lotus_connections:2.5.0.1