Show filters
60 Total Results
Displaying 11-20 of 60
Sort by:
Attacker Value
Unknown
CVE-2020-4097
Disclosure Date: November 05, 2020 (last updated February 22, 2025)
In HCL Notes version 9 previous to release 9.0.1 FixPack 10 Interim Fix 8, version 10 previous to release 10.0.1 FixPack 6 and version 11 previous to 11.0.1 FixPack 1, a vulnerability in the input parameter handling of the Notes Client could potentially be exploited by an attacker resulting in a buffer overflow. This could enable an attacker to crash HCL Notes or execute attacker-controlled code on the client.
0
Attacker Value
Unknown
CVE-2020-14240
Disclosure Date: November 05, 2020 (last updated February 22, 2025)
HCL Notes versions previous to releases 9.0.1 FP10 IF8, 10.0.1 FP6 and 11.0.1 FP1 is susceptible to a Stored Cross-site Scripting (XSS) vulnerability. An attacker could use this vulnerability to execute script in a victim's Web browser within the security context of the hosting Web site and/or steal the victim's cookie-based authentication credentials.
0
Attacker Value
Unknown
CVE-2020-4089
Disclosure Date: June 26, 2020 (last updated November 28, 2024)
HCL Notes is vulnerable to an information leakage vulnerability through its support for the 'mailto' protocol. This vulnerability could result in files from the user's filesystem or connected network filesystems being leaked to a third party. All versions of HCL Notes 9, 10 and 11 are affected.
0
Attacker Value
Unknown
CVE-2018-1771
Disclosure Date: December 20, 2018 (last updated November 27, 2024)
IBM Domino 9.0 and 9.0.1 could allow an attacker to execute commands on the system by triggering a buffer overflow in the parsing of command line arguments passed to nsd.exe. IBM X-force ID: 148687.
0
Attacker Value
Unknown
CVE-2013-0522
Disclosure Date: July 16, 2018 (last updated November 27, 2024)
The Notes Client Single Logon feature in IBM Notes 8.0, 8.0.1, 8.0.2, 8.5, 8.5.1, 8.5.2, 8.5.3, and 9.0 on Windows allows local users to discover passwords via vectors involving an unspecified operating system communication mechanism for password transmission between Windows and Notes. IBM X-Force ID: 82531.
0
Attacker Value
Unknown
CVE-2013-0589
Disclosure Date: July 11, 2018 (last updated November 27, 2024)
IBM iNotes before 8.5.3 Fix Pack 6 and 9.x before 9.0.1 allows remote attackers to bypass the remote image filtering mechanism and obtain sensitive information via a crafted e-mail message. IBM X-Force ID: 83371.
0
Attacker Value
Unknown
CVE-2013-0592
Disclosure Date: July 11, 2018 (last updated November 27, 2024)
Cross-site scripting (XSS) vulnerability in IBM iNotes before 8.5.3 Fix Pack 6 and 9.x before 9.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. IBM X-Force ID: 83815.
0
Attacker Value
Unknown
CVE-2013-0594
Disclosure Date: July 11, 2018 (last updated November 27, 2024)
Open redirect vulnerability in IBM iNotes before 8.5.3 Fix Pack 6 and 9.x before 9.0.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors. IBM X-Force ID: 83383.
0
Attacker Value
Unknown
CVE-2018-1435
Disclosure Date: March 14, 2018 (last updated November 26, 2024)
IBM Notes 8.5 and 9.0 is vulnerable to a DLL hijacking attack. A remote attacker could trick a user to double click a malicious executable in an attacker-controlled directory, which could result in code execution. IBM X-Force ID: 139563.
0
Attacker Value
Unknown
CVE-2018-1437
Disclosure Date: March 14, 2018 (last updated November 26, 2024)
IBM Notes 8.5 and 9.0 could allow an attacker to execute arbitrary code on the system, caused by an error related to multiple untrusted search path. A local attacker could exploit this vulnerability to DLL hijacking to execute arbitrary code on the system or cause the application to crash. IBM X-Force ID: 139565.
0