IBM Lotus Domino "user.nsf" Cross-Site Scripting Vulnerability
Description
A vulnerability was reported in IBM Lotus Domino.
A remote attacker could exploit it by enticing their victim into following a specially crafted link in order to execute arbitrary JavaScript or HTML code.
In order to exploit this vulnearbility, the attacker must know hashes in address of a letter.
A proof of concept is available.