VYPR
Unrated severityNVD Advisory· Published Jun 15, 2010· Updated Jun 16, 2026

CVE-2010-2277

CVE-2010-2277

Description

Multiple cross-site scripting (XSS) vulnerabilities in IBM Lotus Connections 2.5.x before 2.5.0.2 allow remote attackers to inject arbitrary web script or HTML via the (1) create or (2) edit form in the Communities component, the (3) verbiage field in the Bookmarks component, or (4) unspecified vectors related to the Mobile Blogs component.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • IBM/Connections3 versions
    cpe:2.3:a:ibm:lotus_connections:2.5.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:ibm:lotus_connections:2.5.0:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:lotus_connections:2.5.0.1:*:*:*:*:*:*:*
    • (no CPE)range: <2.5.0.2

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.