Unrated severityNVD Advisory· Published Sep 9, 2009· Updated Apr 23, 2026
CVE-2009-3114
CVE-2009-3114
Description
The RSS reader widget in IBM Lotus Notes 8.0 and 8.5 saves items from an RSS feed as local HTML documents, which allows remote attackers to execute arbitrary script in Internet Explorer's Local Machine Zone via a crafted feed, aka SPR RGAU7RDJ9K.
Affected products
1- cpe:2.3:a:ibm:lotus_notes:8.5:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- secunia.com/advisories/36813nvdVendor Advisory
- www-01.ibm.com/support/docview.wssnvdVendor Advisory
- www.scip.chnvd
- www.securityfocus.com/archive/1/506296/100/0/threadednvd
- www.securityfocus.com/bid/36305nvd
News mentions
0No linked articles in our index yet.