Vulnerability Details CVE-2010-2279
The Top Updates implementation in the Homepage component in IBM Lotus Connections 2.5.x before 2.5.0.2, when "forced SSL" is enabled, uses http for links, which has unspecified impact and remote attack vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.013
EPSS Ranking 66.1%
CVSS Severity
CVSS v2 Score 7.6
Products affected by CVE-2010-2279
-
cpe:2.3:a:ibm:lotus_connections:2.5.0
-
cpe:2.3:a:ibm:lotus_connections:2.5.0.1