Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Top Updates implementation in the Homepage component in IBM Lotus Connections 2.5.x before 2.5.0.2, when "forced SSL" is enabled, uses http for links, which has unspecified impact and remote attack vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Lotus Connections Homepage组件设计错误漏洞
Vulnerability Description
IBM Lotus Connections 是面向企业的社交软件。它使业务专员能够开发、扶植一个同事网络,并与之保持联系;通过调用网络中的专门知识,快速响应业务机遇;与社区中的共事者、合作伙伴和客户讨论并提炼创新理念。 IBM Lotus Connections中,Homepage组件的Top Updates实现存在漏洞,当"force SSL"开启时,使用http链接,将造成未明影响和远程攻击向量。
CVSS Information
N/A
Vulnerability Type
N/A