VYPR
Unrated severityNVD Advisory· Published Sep 9, 2009· Updated Jun 16, 2026

CVE-2009-3114

CVE-2009-3114

Description

The RSS reader widget in IBM Lotus Notes 8.0 and 8.5 saves items from an RSS feed as local HTML documents, which allows remote attackers to execute arbitrary script in Internet Explorer's Local Machine Zone via a crafted feed, aka SPR RGAU7RDJ9K.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • IBM/Lotus Notes2 versions
    cpe:2.3:a:ibm:lotus_notes:8.5:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:ibm:lotus_notes:8.5:*:*:*:*:*:*:*
    • (no CPE)range: 8.0, 8.5

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.