Vulnerability Details CVE-2023-37539
The Domino Catalog template is susceptible to a Stored Cross-Site Scripting (XSS) vulnerability. An attacker with the ability to edit documents in the catalog application/database created from this template can embed a cross site scripting attack. The attack would be activated by an end user clicking it.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 23.4%
CVSS Severity
CVSS v3 Score 8.4
Products affected by CVE-2023-37539
-
cpe:2.3:a:hcltech:domino:11.0
-
cpe:2.3:a:hcltech:domino:12.0
-
cpe:2.3:a:hcltech:domino:14.0