Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Lotus Expeditor
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2012-0191 1 Ibm 1 Lotus Expeditor 2024-11-21 5.0 MEDIUM N/A
The web container in IBM Lotus Expeditor 6.1.x and 6.2.x before 6.2 FP5+Security Pack does not properly perform access control for requests, which allows remote attackers to spoof a localhost request origin via crafted headers.
CVE-2012-0187 1 Ibm 1 Lotus Expeditor 2024-11-21 9.3 HIGH N/A
Untrusted search path vulnerability in IBM Lotus Expeditor 6.1.x and 6.2.x before 6.2 FP5+Security Pack allows local users to gain privileges via a Trojan horse DLL in the current working directory.
CVE-2012-0186 1 Ibm 1 Lotus Expeditor 2024-11-21 4.3 MEDIUM N/A
Directory traversal vulnerability in the Eclipse Help component in IBM Lotus Expeditor 6.1.x and 6.2.x before 6.2 FP5+Security Pack allows remote attackers to discover the locations of files via a crafted URL.