Due to a flaw in Lotus Domino Server, it is possible for the server to return content specified by a malicious host to the user. If specially crafted text is appended to a URL, Lotus Domino will generate an error including that text. If this text happens to be client-side scripting, it will be executed in the client's browser and treated as content originating from the target server returning the error message (even though the scripting may have originated at another site entirely).
Due to a flaw in Lotus Domino Server, it is possible for the server to return content specified by a malicious host to the user. If specially crafted text is appended to a URL, Lotus Domino will generate an error including that text. If this text happens to be client-side scripting, it will be executed in the client's browser and treated as content originating from the target server returning the error message (even though the scripting may have originated at another site entirely).